Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Adobe Commerce | 0 ~ 2.4.4-p9 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-39402 | 8.4 HIGH | Adobe Commerce | Improper Neutralization of Special Elements used in an OS Command ('OS Co |
| CVE-2024-39401 | 8.4 HIGH | Adobe Commerce | Improper Neutralization of Special Elements used in an OS Command ('OS Co |
| CVE-2024-39400 | 8.1 HIGH | DOM XSS through integrations can impact other admins |
| CVE-2024-41840 | 7.8 HIGH | ZDI-CAN-24607: Adobe Bridge JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vul |
| CVE-2024-41865 | 7.8 HIGH | Adobe Dimension Untrusted Search Path lead to load malicious DLL swift.dll |
| CVE-2024-34117 | 7.8 HIGH | Adobe Photoshop 2024 MPO File Parsing Use-After-Free vulnerability |
| CVE-2024-39426 | 7.8 HIGH | ZDI-CAN-24312: Adobe Acrobat Reader DC Annotation Memory Corruption Remote Code Execution |
| CVE-2024-34133 | 7.8 HIGH | Adobe Illustrator CC 2023 v27.9 Vulnerability I |
| CVE-2024-34124 | 7.8 HIGH | ZDI-CAN-24031: Adobe Dimension SKP File Parsing Out-Of-Bounds Write Remote Code Execution |
| CVE-2024-41864 | 7.8 HIGH | Adobe Substance 3D Designer ICO Parsing Out-Of-Bounds Write Vulnerability |
| CVE-2024-41858 | 7.8 HIGH | Adobe InCopy has an integer overflow vulnerability when parsing SVG file |
| CVE-2024-20789 | 7.8 HIGH | ZDI-CAN-24030: Adobe Dimension SKP File Parsing Use-After-Free Remote Code Execution Vulne |
| CVE-2024-39386 | 7.8 HIGH | ZDI-CAN-24057: Adobe Bridge AVI FIle Parsing Out-Of-Bounds Write Remote Code Execution Vul |
| CVE-2024-41856 | 7.8 HIGH | Illustrator | Improper Input Validation (CWE-20) |
| CVE-2024-39388 | 7.8 HIGH | ZDI-CAN-24055: Adobe Substance 3D Stager SKP File Parsing Use-After-Free Remote Code Execu |
| CVE-2024-39394 | 7.8 HIGH | Adobe Indesign 2024 PDF File Parsing Out Of Bound Write Remote Code Execution Vulnerabilit |
| CVE-2024-39393 | 7.8 HIGH | Adobe Indesign 2024 PCT File Parsing Memory Corruption Remote Code Execution Vulnerability |
| CVE-2024-39389 | 7.8 HIGH | Adobe Indesign PDF File Parsing Stack Based Buffer Overflow Remote Code Execution Vulnerab |
| CVE-2024-41851 | 7.8 HIGH | Adobe InDesign (Beta) has an integer overflow vulnerability when parsing SVG file |
| CVE-2024-41853 | 7.8 HIGH | Indesign 2024 EPS File Parsing Heap Memory Corruption Remote Code Execution Vulnerability |
Showing top 20 of 74 CVEs. View all on vendor page → →
No comments yet