Adobe Connect version 11.0.7 (and earlier) is affected by an Input Validation vulnerability in the export feature. An attacker could exploit this vulnerability by injecting a payload into an online event form and achieve code execution if the victim exports and opens the data on their local machine.
References
Link | Resource |
---|---|
https://helpx.adobe.com/security/products/connect/apsb21-19.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: adobe
Published: 2021-03-09T00:00:00
Updated: 2021-06-28T12:41:44
Reserved: 2020-12-18T00:00:00
Link: CVE-2021-21085
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-03-12T19:15:14.927
Modified: 2021-12-10T19:44:12.477
Link: CVE-2021-21085
JSON object: View
Redhat Information
No data.
CWE