QID 377584

Date Published: 2022-09-14

QID 377584: Adobe InDesign Arbitrary File System Read Vulnerability (APSB22-50)

Adobe InDesign is a desktop publishing software application developed and marketed by Adobe Systems.

Affected Versions:
Adobe InDesign - 17.3 and prior Windows and MacOS
Adobe InDesign - 16.4.2 and prior Windows and MacOS

QID Detection Logic:(Authenticated)
This QID checks vulnerable versions of Adobe InDesign.

Successful exploitation could lead to arbitrary code execution, arbitrary file system read

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 5.4 severity.
  • Solution

    Adobe has released fix to address this issue. Customers are advised to refer to APSB22-50 for updates pertaining to this vulnerability.

    Software Advisories
    Advisory ID Software Component Link
    APSB22-50 URL Logo helpx.adobe.com/security/products/indesign/apsb22-50.html