PT-2020-5107 · Adobe · Lightroom
Published
2020-08-19
·
Updated
2021-07-21
·
CVE-2020-9724
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Adobe Lightroom versions 9.2.0.10 and earlier
Description
The issue is related to the insecure loading of a non-existent dynamic library in Adobe Lightroom Classic. This could allow a remote attacker to escalate their privileges in the context of the current user.
Recommendations
For Adobe Lightroom versions 9.2.0.10 and earlier, update to a version that contains a fix for this issue to prevent potential privilege escalation.
Fix
Improper Privilege Management
Uncontrolled Search Path Element
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Lightroom