QID 375549

Date Published: 2021-05-12

QID 375549: Adobe InDesign Arbitrary Code Execution Vulnerability (APSB21-22)

Adobe InDesign is a desktop publishing software application.

Affected Versions:
Adobe InDesign 16.0 and earlier versions

QID Detection Logic (Authenticated):
This checks for vulnerable versions of InDesign.

Successful exploitation could lead to arbitrary code execution in the context of the current user.

  • CVSS V3 rated as High - 6.1 severity.
  • CVSS V2 rated as Medium - 4.3 severity.
  • Solution
    The vendor has released updates to fix the vulnerabilities. Please refer to Adobe advisory APSB21-22 for details.

    CVEs related to QID 375549

    Software Advisories
    Advisory ID Software Component Link
    APSB21-22 URL Logo helpx.adobe.com/security/products/indesign/apsb21-22.html