Adobe Digital Editions 4.0.2

CPE Details

Adobe Digital Editions 4.0.2
4.0.2
2017-12-14 16:48 +00:00
2017-12-14 16:48 +00:00

Alerte pour un CPE

Stay informed of any changes for a specific CPE.
Alert management

CPE Name: cpe:2.3:a:adobe:digital_editions:4.0.2:*:*:*:*:*:*:*

Informations

Vendor

adobe

Product

digital_editions

Version

4.0.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-21582 2023-04-11 22:00 +00:00 Adobe Digital Editions version 4.5.11.187303 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
7.8
HIGH
CVE-2021-39826 2021-09-13 22:00 +00:00 Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary command execution vulnerability. An authenticated attacker could leverage this vulnerability to execute arbitrary commands. User interaction is required to abuse this vulnerability in that a user must open a maliciously crafted .epub file.
8.6
HIGH
CVE-2021-39827 2021-09-13 22:00 +00:00 Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by an arbitrary file write vulnerability in the Digital Editions installer. An authenticated attacker could leverage this vulnerability to write an arbitrary file to the system. User interaction is required before product installation to abuse this vulnerability.
6.5
MEDIUM
CVE-2021-39828 2021-09-13 22:00 +00:00 Adobe Digital Editions 4.5.11.187646 (and earlier) are affected by a privilege escalation vulnerability in the Digital Editions installer. An authenticated attacker could leverage this vulnerability to escalate privileges. User interaction is required before product installation to abuse this vulnerability.
6.5
MEDIUM
CVE-2021-21100 2021-04-12 22:00 +00:00 Adobe Digital Editions version 4.5.11.187245 (and earlier) is affected by a Privilege Escalation vulnerability during installation. An unauthenticated attacker could leverage this vulnerability to achieve arbitrary file system write in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
7.8
HIGH
CVE-2020-3798 2020-06-26 18:09 +00:00 Adobe Digital Editions versions 4.5.11.187212 and below have a file enumeration (host or local network) vulnerability. Successful exploitation could lead to information disclosure.
6.5
MEDIUM
CVE-2020-3759 2020-02-13 14:55 +00:00 Adobe Digital Editions versions 4.5.10 and below have a buffer errors vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2020-3760 2020-02-13 14:55 +00:00 Adobe Digital Editions versions 4.5.10 and below have a command injection vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2019-7095 2019-05-24 16:48 +00:00 Adobe Digital Editions versions 4.5.10.185749 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2018-12817 2019-01-18 16:00 +00:00 Adobe Digital Editions versions 4.5.9 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-12813 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2018-12814 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2018-12816 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-12818 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-12819 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-12820 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-12821 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have an out of bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-12822 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2018-12823 2018-10-17 16:00 +00:00 Adobe Digital Editions versions 4.5.8 and below have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2018-4925 2018-05-19 15:00 +00:00 Adobe Digital Editions versions 4.5.7 and below have an exploitable Out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2018-4926 2018-05-19 15:00 +00:00 Adobe Digital Editions versions 4.5.7 and below have an exploitable Stack Overflow vulnerability. Successful exploitation could lead to information disclosure.
5.5
MEDIUM
CVE-2017-11273 2017-12-09 05:00 +00:00 An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. Adobe Digital Editions parses crafted XML files in an unsafe manner, which could lead to sensitive information disclosure.
5.5
MEDIUM
CVE-2017-11297 2017-12-09 05:00 +00:00 An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead to disclosure of memory addresses.
5.3
MEDIUM
CVE-2017-11298 2017-12-09 05:00 +00:00 An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead to disclosure of memory addresses.
5.3
MEDIUM
CVE-2017-11299 2017-12-09 05:00 +00:00 An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead to disclosure of memory addresses.
5.3
MEDIUM
CVE-2017-11300 2017-12-09 05:00 +00:00 An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead to disclosure of memory addresses.
5.3
MEDIUM
CVE-2017-11301 2017-12-09 05:00 +00:00 An issue was discovered in Adobe Digital Editions 4.5.6 and earlier versions. An exploitable memory corruption vulnerability exists, which could lead to disclosure of memory addresses.
5.3
MEDIUM
CVE-2017-11272 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has a security bypass vulnerability.
7.5
HIGH
CVE-2017-11274 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-11275 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-11276 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-11277 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-11278 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-11279 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable use after free vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-11280 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier has an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-3091 2017-08-07 22:00 +00:00 Adobe Digital Editions 4.5.4 and earlier versions 4.5.4 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.
7.5
HIGH
CVE-2017-3088 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the PDF runtime engine. Successful exploitation could lead to arbitrary code execution.
10
CRITICAL
CVE-2017-3089 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the PDF imaging model. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-3090 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading of browser related library extensions in the installer plugin. A successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-3092 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading of editor control library functions in the installer plugin. A successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-3093 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the bitmap representation module. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-3094 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the PDF processing engine. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-3096 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier have an exploitable memory corruption vulnerability in the character code mapping module. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-3097 2017-06-20 15:00 +00:00 Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading functions in the installer plugin. A successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-2973 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.
9.8
CRITICAL
CVE-2017-2974 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2975 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2976 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2977 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2978 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2979 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2980 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2017-2981 2017-02-15 05:11 +00:00 Adobe Digital Editions versions 4.5.3 and earlier have an exploitable buffer over-read vulnerability. Successful exploitation could lead to information disclosure.
7.5
HIGH
CVE-2016-7888 2016-12-15 05:31 +00:00 Adobe Digital Editions versions 4.5.2 and earlier has an important vulnerability that could lead to memory address leak.
5.3
MEDIUM
CVE-2016-7889 2016-12-15 05:31 +00:00 Adobe Digital Editions versions 4.5.2 and earlier has an issue with parsing crafted XML entries that could lead to information disclosure.
7.5
HIGH
CVE-2016-6980 2016-09-26 15:00 +00:00 Use-after-free vulnerability in Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4263.
9.8
CRITICAL
CVE-2016-4256 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
9.8
CRITICAL
CVE-2016-4257 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
9.8
CRITICAL
CVE-2016-4258 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4259, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
9.8
CRITICAL
CVE-2016-4259 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4260, CVE-2016-4261, and CVE-2016-4262.
9.8
CRITICAL
CVE-2016-4260 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4261, and CVE-2016-4262.
9.8
CRITICAL
CVE-2016-4261 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, and CVE-2016-4262.
9.8
CRITICAL
CVE-2016-4262 2016-09-16 03:00 +00:00 Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4256, CVE-2016-4257, CVE-2016-4258, CVE-2016-4259, CVE-2016-4260, and CVE-2016-4261.
9.8
CRITICAL
CVE-2016-4263 2016-09-16 03:00 +00:00 Use-after-free vulnerability in Adobe Digital Editions before 4.5.2 allows attackers to execute arbitrary code via unspecified vectors.
9.8
CRITICAL
CVE-2016-0954 2016-03-09 10:00 +00:00 Adobe Digital Editions before 4.5.1 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
9.8
CRITICAL
Click on the button to the left (OFF), to authorize the inscription of cookie improving the functionalities of the site. Click on the button to the left (Accept all), to unauthorize the inscription of cookie improving the functionalities of the site.