QID 376238
Date Published: 2022-01-13
QID 376238: Adobe InCopy Multiple Vulnerabilities (APSB22-04)
Adobe InCopy is a professional word processor made by Adobe.
CVE-2021-45053: Adobe InCopy is affected with Arbitrary Code Execution Vulnerability.
CVE-2021-45054: Adobe InCopy is affected with Privilege escalation Vulnerability.
CVE-2021-45055: Adobe InCopy is affected with Arbitrary Code Execution Vulnerability.
CVE-2021-45056: Adobe InCopy is affected with Arbitrary Code Execution Vulnerability.
Affected Versions:
Adobe InCopy 16.4 and earlier version for macOS
Adobe InCopy 16.4 and earlier version for Windows
QID Detection Logic (Authenticated):
This checks for vulnerable versions of InCopy.
Successful exploitation of these vulnerabilities could lead to arbitrary code execution and application denial of service.
Solution
The vendor has released updates to fix the vulnerabilities. Please refer to Adobe advisory APSB22-04 for details.
Vendor References
CVEs related to QID 376238
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| APSB22-04 |
|