QID 376588
Date Published: 2022-05-11
QID 376588: Adobe InCopy Multiple Vulnerabilities (APSB22-28)
Adobe InCopy is a professional word processor made by Adobe.
CVE-2022-28834: Adobe InCopy is affected with Arbitrary Code Execution Vulnerability.
CVE-2022-28835: Adobe InCopy is affected with Arbitrary Code Execution Vulnerability.
CVE-2022-28836: Adobe InCopy is affected with Arbitrary Code Execution Vulnerability.
Affected Versions:
Adobe InCopy 16.4.1 and earlier version for Windows and macOS
Adobe InCopy 17.1 and earlier version for Windows and macOS
QID Detection Logic (Authenticated):
This checks for vulnerable versions of InCopy.
Successful exploitation of these vulnerabilities could lead to arbitrary code execution.
Solution
The vendor has released updates to fix the vulnerabilities. Please refer to Adobe advisory APSB22-28 for details.
Vendor References
CVEs related to QID 376588
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| APSB22-28 |
|