PT-2016-4583 · Adobe · Adobe Creative Cloud Desktop Application

Lokihardt

·

Published

2016-04-12

·

Updated

2016-12-03

·

CVE-2016-1034

CVSS v3.1

9.4

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Adobe Creative Cloud Desktop Application versions prior to 3.6.0.244
Description The issue allows remote attackers to read or write to arbitrary files via unspecified vectors in the Sync Process of the JavaScript API for Creative Cloud Libraries.
Recommendations For versions prior to 3.6.0.244, update to version 3.6.0.244 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2016-1034
ZDI-16-235

Affected Products

Adobe Creative Cloud Desktop Application