CVE-2021-21085

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
12/03/2021
Last modified:
10/12/2021

Description

Adobe Connect version 11.0.7 (and earlier) is affected by an Input Validation vulnerability in the export feature. An attacker could exploit this vulnerability by injecting a payload into an online event form and achieve code execution if the victim exports and opens the data on their local machine.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:connect:*:*:*:*:*:*:*:* 11.0.7 (including)


References to Advisories, Solutions, and Tools