Adobe Connect Privilege Escalation Vulnerability (CVE-2016-4118)
Adobe Connect Privilege Escalation Vulnerability (CVE-2016-4118)
Release date:
Updated on:
Affected Systems:
Adobe Connect <9.5.3
Description:
CVE (CAN) ID: CVE-2016-4118
Adobe Connect is a Web conferencing software.
On Windows, in versions earlier than Adobe Connect 9.5.3, the plug-in installer has a suspicious search PATH Vulnerability. Local Users can exploit this vulnerability to increase their permissions.
<* Source: Anand Bhat
Link: https://helpx.adobe.com/security/products/connect/apsb16-17.html
*>
Suggestion:
Vendor patch:
Adobe
-----
Adobe has released a Security Bulletin (apsb16-17) and patches for this:
Apsb16-17: Security update available for Adobe Connect
Link: https://helpx.adobe.com/security/products/connect/apsb16-17.html
This article permanently updates the link address: