VDB

CVE-2021-36047

CVE-2021-36047 PUBLISHED CVSS 7.800000190734863 HIGH

XMP Toolkit SDK version 2020.1 (and earlier) is affected by an Improper Input Validation vulnerability potentially resulting in arbitrary code execution in the context of the current user. Exploitation requires user interaction in that a victim must open a crafted file.

EPSS 0.55% · 68.1th percentile

Risk Scores

CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.55%
68.1th percentile

Affected Products

VendorProductVersions
AdobeXMP Toolkitunspecified, *
debiandebian_linux10.0
adobexmp_toolkit_software_development_kit0

Timeline

  • Sep 1, 2021 CVE Published
  • Sep 2, 2021 EPSS Score
  • Sep 9, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 21, 2022 EPSS Score
  • Jun 18, 2022 EPSS Score
  • Aug 16, 2022 EPSS Score
  • Dec 9, 2022 EPSS Score
  • Feb 5, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›