PT-2020-5107 · Adobe · Lightroom

Published

2020-08-19

·

Updated

2021-07-21

·

CVE-2020-9724

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Adobe Lightroom versions 9.2.0.10 and earlier
Description The issue is related to the insecure loading of a non-existent dynamic library in Adobe Lightroom Classic. This could allow a remote attacker to escalate their privileges in the context of the current user.
Recommendations For Adobe Lightroom versions 9.2.0.10 and earlier, update to a version that contains a fix for this issue to prevent potential privilege escalation.

Fix

Improper Privilege Management

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05703
CVE-2020-9724

Affected Products

Lightroom