QID 730110
Date Published: 2021-08-11
QID 730110: Adobe Connect Privilege Escalation Vulnerability (APSB21-36)
Adobe Connect is software used to create information and general presentations, online training materials, web conferencing, learning modules and user desktop sharing.
CVE-2021-28579: Improper access control in adobe connect allows privilege escalations.
Affected Versions:
Adobe Connect versions 11.2.1 and earlier versions
QID Detection Logic (Unauthenticated):
This QID reads the version text file in an unauthenticated request to see if it is vulnerable.
On Successful exploitation the attacker would be able to escalate privileges in the target which may aid further exploitations.
Solution
Customers are advised to follow the patch procedure provided by Adobe. Further more information can be obtained from Adobe Connect 11.2.2
Vendor References
CVEs related to QID 730110
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| APSB21-36 |
|