VDB

CVE-2021-44709

CVE-2021-44709 PUBLISHED CVSS 7.800000190734863 HIGH

Adobe has released security updates for Adobe Acrobat and Reader for Windows and macOS. These updates address  multiple critical, important and moderate vulnerabilities. Successful exploitation could lead to arbitrary code execution, memory leak, application denial of service,  security feature bypass and privilege escalation. Vulnerability: Heap-based Buffer Overflow (CWE-122) Impact: Arbitrary code execution Severity: Critical CVSS: 7.8 CWE: CWE-122

EPSS 29.95% · 98.0th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
29.95%
98.0th percentile

Affected Products

VendorProductVersions
AdobeAcrobat Reader 201717.011.30204, 17.011.30204, 17.011.30204
AdobeAcrobat 202020.004.30017, 20.004.30017, 20.004.30017
AdobeAcrobat Reader DC21.007.20099, 21.007.20099, 21.007.20099
AdobeAcrobat DC21.007.20099, 21.007.20099, 21.007.20099
AdobeAcrobat Reader 202020.004.30017, 20.004.30017, 20.004.30017
AdobeAcrobat 201717.011.30204, 17.011.30204, 17.011.30204

Timeline

  • Jan 11, 2022 CVE Published
  • Jan 15, 2022 EPSS Score
  • Jan 22, 2022 CVE Updated
  • Feb 4, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Aug 17, 2022 EPSS Score
  • Dec 2, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • May 11, 2023 EPSS Score
  • Aug 25, 2023 EPSS Score
  • Oct 18, 2023 EPSS Score
  • Feb 1, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›