CVE-2024-30299

Adobe Framemaker Publishing Server versions 2020.3, 2022.2 and earlier are affected by an Improper Authentication vulnerability that could result in privilege escalation. An attacker could exploit this vulnerability to gain unauthorized access or elevated privileges within the application. Exploitation of this issue does not require user interaction.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:framemaker_publishing_server:2022:-:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2022:update1:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:-:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:update1:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:update2:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:update3:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2022:update2:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:*:*:*:*:*:*:*:*

History

15 Jul 2024, 17:37

Type Values Removed Values Added
CPE cpe:2.3:a:adobe:framemaker_publishing_server:2022:-:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:update1:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:update2:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:update3:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2022:update2:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2022:update1:*:*:*:*:*:*
cpe:2.3:a:adobe:framemaker_publishing_server:2020:-:*:*:*:*:*:*
CVSS v2 : unknown
v3 : 10.0
v2 : unknown
v3 : 9.8
First Time Adobe framemaker Publishing Server
Adobe
References () https://helpx.adobe.com/security/products/framemaker-publishing-server/apsb24-38.html - () https://helpx.adobe.com/security/products/framemaker-publishing-server/apsb24-38.html - Vendor Advisory

13 Jun 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-13 12:15

Updated : 2024-07-15 17:37


NVD link : CVE-2024-30299

Mitre link : CVE-2024-30299


JSON object : View

Products Affected

adobe

  • framemaker_publishing_server
CWE
CWE-287

Improper Authentication