Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-34123


Premiere Pro versions 23.6.5, 24.4.1 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution. An attacker could exploit this vulnerability by inserting a malicious file into the search path, which the application might execute instead of the legitimate file. This could occur when the application uses a search path to locate executables or libraries. Exploitation of this issue requires user interaction, attack complexity is high.


Published

2024-07-09T19:15:11.493

Last Modified

2024-12-03T14:35:59.150

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.0 (HIGH)

Weaknesses
  • Type: Primary
    CWE-426

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application adobe premiere_pro < 23.6.7 Yes
Application adobe premiere_pro < 24.5 Yes
Operating System apple macos - No
Operating System microsoft windows - No

References