PT-2006-1589 · Adobe · Photoshop Cs2+2
Published
2006-02-02
·
Updated
2018-10-19
·
CVE-2006-0525
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Adobe Photoshop CS2
Adobe Illustrator CS2
Adobe Help Center (affected versions not specified)
Description
The issue allows local users to gain privileges via Trojan horse programs due to the installation of a large number of .EXE and .DLL files with write-access permission for the Everyone group.
Recommendations
For Adobe Photoshop CS2, consider restricting access to the installed .EXE and .DLL files to minimize the risk of exploitation.
For Adobe Illustrator CS2, avoid using the affected software until a fix is available, and restrict write-access to the installed files.
For Adobe Help Center, restrict access to the installed .EXE and .DLL files, and consider disabling any unnecessary features until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Help Center
Illustrator Cs2
Photoshop Cs2