Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Adobe Commerce | 0 ~ 2.4.4-p6 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Improper Neutralization of Special Elements used in an OS Command (‘OS Command Injection’) no user interaction is required to exploit this vulnerability. | https://github.com/xxDlib/CVE-2024-20720-PoC | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-20738 | 9.8 CRITICAL | Adobe FrameMaker Publishing Server Authentication Bypass Vulnerability | CVE-2023-44324 by |
| CVE-2024-20719 | 9.1 CRITICAL | [Adobe Commerce] Stored XSS from low privileged admin user on every admin page, bypassing |
| CVE-2024-20727 | 7.8 HIGH | [TianfuCup] out-of-bounds access vulnerability when parsing jpeg2000 |
| CVE-2024-20744 | 7.8 HIGH | Adobe Substance 3D Paint PICT Parsing Access Violation Write Vulnerability |
| CVE-2024-20729 | 7.8 HIGH | TALOS-2023-1890 - Adobe Acrobat Reader Annot3D object zoom event use-after-free vulnerabi |
| CVE-2024-20743 | 7.8 HIGH | Adobe Substance 3D Paint PSD Parsing Out-Of-Bounds Write Vulnerability |
| CVE-2024-20728 | 7.8 HIGH | ZDI-CAN-22727: Adobe Acrobat Pro DC Annotation Out-Of-Bounds Write Remote Code Execution V |
| CVE-2024-20740 | 7.8 HIGH | Adobe Substance 3D Paint PSD Parsing Out-Of-Bounds Write Vulnerability |
| CVE-2024-20742 | 7.8 HIGH | Adobe Substance 3D Paint RAS File Parsing Out-Of-Bounds Read Vulnerability |
| CVE-2024-20741 | 7.8 HIGH | Adobe Substance 3D Paint ICO Parsing Access Violation Write Vulnerability |
| CVE-2024-20731 | 7.8 HIGH | TALOS-2023-1901 - Adobe Acrobat Reader FileAttachment PDAnnot destroy use-after-free vulne |
| CVE-2024-20730 | 7.8 HIGH | TALOS-2023-1906 - Adobe Acrobat Reader Font CPAL integer overflow vulnerability |
| CVE-2024-20726 | 7.8 HIGH | [TianfuCup] JP2K Image Parsing Out-Of-Bounds Write |
| CVE-2024-20739 | 7.8 HIGH | ZDI-CAN-22647: Adobe Audition AVI File Parsing Heap-based Buffer Overflow Remote Code Exec |
| CVE-2024-20750 | 7.8 HIGH | Adobe Substance 3D Designer PICT Parsing Out-Of-Bounds Read Vulnerability |
| CVE-2024-20723 | 7.8 HIGH | Adobe Substance 3D Painter v9.0.1Build2822 Buffer Overflow Vulnerability |
| CVE-2024-20734 | 5.5 MEDIUM | ZDI-CAN-22516: Adobe Acrobat Pro DC AcroForm Use-After-Free Information Disclosure Vulnera |
| CVE-2024-20722 | 5.5 MEDIUM | Adobe Substance 3D Painter v9.0.1Build2822 OOBR Vulnerability III |
| CVE-2024-20724 | 5.5 MEDIUM | Adobe Substance 3D Painter v9.0.1Build2822 OOBR Vulnerability II |
| CVE-2024-20725 | 5.5 MEDIUM | Adobe Substance 3D Painter v9.0.1Build2822 OOBR Vulnerability I |
Showing top 20 of 30 CVEs. View all on vendor page → →
No comments yet