PT-2019-5452 · Adobe · Indesign

Published

2019-04-09

·

Updated

2022-10-12

·

CVE-2019-7107

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe InDesign versions 14.0.1 and below
Description The issue is related to unsafe hyperlink processing and insufficient input validation, which could allow a remote attacker to execute arbitrary code in the context of the current user. Successful exploitation of this issue may lead to arbitrary code execution.
Recommendations For Adobe InDesign versions 14.0.1 and below, update to version 14.0.2 or later to resolve the issue.

Fix

RCE

Weakness Enumeration

Related Identifiers

BDU:2020-03174
CVE-2019-7107

Affected Products

Indesign