CVE-2017-3090

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
20/06/2017
Last modified:
20/04/2025

Description

Adobe Digital Editions versions 4.5.4 and earlier contain an insecure library loading vulnerability. The vulnerability is due to unsafe library loading of browser related library extensions in the installer plugin. A successful exploitation could lead to arbitrary code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:digital_editions:*:*:*:*:*:*:*:* 4.5.4 (including)