Vulnerability Description
Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper certificate validation vulnerability. Successful exploitation could lead to a security bypass.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Creative Cloud | <= 4.4.1.298 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/104103Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040860Third Party AdvisoryVDB Entry
- https://helpx.adobe.com/security/products/creative-cloud/apsb18-12.htmlVendor Advisory
- http://www.securityfocus.com/bid/104103Third Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040860Third Party AdvisoryVDB Entry
- https://helpx.adobe.com/security/products/creative-cloud/apsb18-12.htmlVendor Advisory
FAQ
What is CVE-2018-4991?
CVE-2018-4991 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Adobe Creative Cloud Desktop Application versions 4.4.1.298 and earlier have an exploitable Improper certificate validation vulnerability. Successful exploitation could lead to a security bypass.
How severe is CVE-2018-4991?
CVE-2018-4991 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2018-4991?
Check the references section above for vendor advisories and patch information. Affected products include: Adobe Creative Cloud.