PT-2024-9659 · Adobe · Connect
Published
2024-11-27
·
Updated
2025-01-15
·
CVE-2024-54050
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Adobe Connect versions 12.6, 11.4.7 and earlier
Description
The issue is related to a URL Redirection to Untrusted Site, also known as an 'Open Redirect' vulnerability. This vulnerability allows an attacker to redirect users to malicious websites. Exploitation of this issue requires user interaction, meaning the attacker needs the user to perform a specific action to successfully exploit the vulnerability.
Recommendations
For Adobe Connect versions 12.6 and earlier, update to a version that is not affected by this issue.
For Adobe Connect version 11.4.7 and earlier, update to a version that is not affected by this issue.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Open Redirect
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Connect