CVE Vulnerabilities

CVE-2021-36061

Violation of Secure Design Principles

Published: Sep 01, 2021 | Modified: Sep 09, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Adobe Connect version 11.2.2 (and earlier) is affected by a secure design principles violation vulnerability via the pbMode parameter. An unauthenticated attacker could leverage this vulnerability to edit or delete recordings on the Connect environment. Exploitation of this issue requires user interaction in that a victim must publish a link of a Connect recording.

Weakness

The product violates well-established principles for secure design.

Affected Software

Name Vendor Start Version End Version
Connect Adobe * 11.2.2 (including)

References