IT

Tracker / CVE-2020-24433

CVE-2020-24433

High 7.8

Adobe Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a local privilege escalation vulnerability that could enable a user without administrator privileges to delete arbitrary files and potentially execute arbitrary code as SYSTEM. Exploitation of this issue requires an attacker to socially engineer a victim, or the attacker must already have some access to the environment.

Affected products and versions

adobe acrobat · … → 20.001.30005
adobe acrobat_dc · … → 17.011.30175
adobe acrobat_dc · … → 20.012.20048
adobe acrobat_reader · … → 20.001.30005
adobe acrobat_reader_dc · … → 17.011.30175
adobe acrobat_reader_dc · … → 20.012.20048

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References