cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2024-20754,https://securityvulnerability.io/vulnerability/CVE-2024-20754,Adobe Lightroom Desktop Vulnerable to Arbitrary Code Execution via Untrusted Search Path,The vulnerability in Adobe Lightroom Desktop allows for an Untrusted Search Path exploitation where an attacker can craft a malicious file that alters the application's search path for critical resources. This may lead to arbitrary code execution under the current user’s context when the compromised file is opened. Mitigation involves ensuring that only trusted paths are used for resource allocation and being vigilant about the files opened within the application.,Adobe,Lightroom Desktop,7.8,HIGH,0.0006399999838322401,false,,false,false,false,,,false,false,,2024-03-18T17:12:20.105Z,0 CVE-2021-43753,https://securityvulnerability.io/vulnerability/CVE-2021-43753,Adobe Lightroom TIF File Parsing Use-After-Free Information Disclosure Vulnerability,"A use-after-free vulnerability exists in Adobe Lightroom version 4.4 and earlier when processing TIF files. This vulnerability could potentially allow an attacker to escalate privileges if a user interacts with a maliciously crafted TIF file. Exploitation of this flaw necessitates user action, as the victim must open the malicious file for the attack to succeed. Users are advised to be cautious when handling TIF files to minimize risks.",Adobe,Lightroom Desktop,7.8,HIGH,0.014569999650120735,false,,false,false,false,,,false,false,,2023-09-07T12:54:30.742Z,0