Adobe InCopy version 16.0 (and earlier) is affected by an path traversal vulnerability when parsing a crafted file. An unauthenticated attacker could leverage this vulnerability to achieve remote code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Metrics
Affected Vendors & Products
References
History
Wed, 23 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: adobe
Published: 2021-06-28T13:45:17.800Z
Updated: 2025-04-23T19:41:00.909Z
Reserved: 2020-12-18T00:00:00.000Z
Link: CVE-2021-21090
Updated: 2024-08-03T18:01:14.127Z
Status : Modified
Published: 2021-06-28T14:15:09.157
Modified: 2024-11-21T05:47:32.903
Link: CVE-2021-21090
No data.