QID 376242
Date Published: 2022-01-17
QID 376242: Adobe Captivate Privilege Escalation Vulnerability (APSB21-60)
Adobe Captivate is a rapid responsive authoring tool that is used for creating e-learning content
such as software demonstrations, software simulations, branched scenarios, and randomized
quizzes in Small Web Formats (.swf) and HTML5 formats.
Adobe has released a security hotfix for Adobe Captivate. This hotfix addresses an important vulnerability,
which is caused by uncontrolled Search Path Element and may lead to privilege escalation.
Affected Products:
Adobe Captivate 2019
Versions earlier and including 11.5.5.0 running on macOS
QID Detection Logic (Authenticated):
This QID checks for the file version of AdobeCaptivate.exe
Successful exploitation could lead to privilege escalation in the context of the current user.
Solution
recommends users update their installation to the newest version.
Vendor References
CVEs related to QID 376242
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| APSB21-60 | macOS |
|