VDB
CVE-2021-44708
CVE-2021-44708
PUBLISHED
CVSS 7.800000190734863 HIGH
Adobe has released security updates for Adobe Acrobat and Reader for Windows and macOS. These updates address multiple critical, important and moderate vulnerabilities. Successful exploitation could lead to arbitrary code execution, memory leak, application denial of service, security feature bypass and privilege escalation. Vulnerability: Heap-based Buffer Overflow (CWE-122) Impact: Arbitrary code execution Severity: Critical CVSS: 7.8 CWE: CWE-122
EPSS 39.32% · 98.5th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
39.32%
98.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Acrobat DC | 21.007.20099, 21.007.20099, 21.007.20099 |
| Adobe | Acrobat 2020 | 20.004.30017, 20.004.30017, 20.004.30017 |
| Adobe | Acrobat Reader 2020 | 20.004.30017, 20.004.30017, 20.004.30017 |
| Adobe | Acrobat Reader DC | 21.007.20099, 21.007.20099, 21.007.20099 |
| Adobe | Acrobat 2017 | 17.011.30204, 17.011.30204, 17.011.30204 |
| Adobe | Acrobat Reader 2017 | 17.011.30204, 17.011.30204, 17.011.30204 |
Timeline
- Jan 11, 2022 CVE Published
- Jan 15, 2022 EPSS Score
- Jan 22, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Mar 17, 2025 EPSS Score
- Mar 21, 2025 EPSS Score
- Mar 22, 2025 EPSS Score
- Mar 29, 2025 EPSS Score
- Mar 30, 2025 EPSS Score
- Apr 12, 2025 EPSS Score
- Apr 13, 2025 EPSS Score