VDB
CVE-2021-44709
CVE-2021-44709
PUBLISHED
CVSS 7.800000190734863 HIGH
Adobe has released security updates for Adobe Acrobat and Reader for Windows and macOS. These updates address multiple critical, important and moderate vulnerabilities. Successful exploitation could lead to arbitrary code execution, memory leak, application denial of service, security feature bypass and privilege escalation. Vulnerability: Heap-based Buffer Overflow (CWE-122) Impact: Arbitrary code execution Severity: Critical CVSS: 7.8 CWE: CWE-122
EPSS 29.95% · 98.0th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
29.95%
98.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Acrobat Reader 2017 | 17.011.30204, 17.011.30204, 17.011.30204 |
| Adobe | Acrobat 2020 | 20.004.30017, 20.004.30017, 20.004.30017 |
| Adobe | Acrobat Reader DC | 21.007.20099, 21.007.20099, 21.007.20099 |
| Adobe | Acrobat DC | 21.007.20099, 21.007.20099, 21.007.20099 |
| Adobe | Acrobat Reader 2020 | 20.004.30017, 20.004.30017, 20.004.30017 |
| Adobe | Acrobat 2017 | 17.011.30204, 17.011.30204, 17.011.30204 |
Timeline
- Jan 11, 2022 CVE Published
- Jan 15, 2022 EPSS Score
- Jan 22, 2022 CVE Updated
- Feb 4, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Aug 17, 2022 EPSS Score
- Dec 2, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- May 11, 2023 EPSS Score
- Aug 25, 2023 EPSS Score
- Oct 18, 2023 EPSS Score
- Feb 1, 2024 EPSS Score