9.3
CVSSv2

CVE-2020-9574

Published: 26/06/2020 Updated: 21/07/2021
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Adobe Illustrator versions 24.0.2 and previous versions have a memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution .

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe illustrator

Recent Articles

In trying times like these, it's reassuring to know you can still get pwned five different ways by Adobe Illustrator files
The Register • Shaun Nichols in San Francisco • 30 Apr 2020

Make sure you update your software with these critical fixes Adobe debuts disk-cleaning tool cleverly disguised as an arbitrary file deletion bug in Creative Cloud on Windows

Adobe has emitted fixes for multiple remote code execution holes in Illustrator and its Bridge code. Those who rely on Adobe Illustrator version 24.0.2 for Windows, or earlier builds, will want to make sure they install APSB20-20, the latest round of security fixes for the drawing tool. "This update resolves critical vulnerabilities that could lead to arbitrary code execution in the context of current user," Adobe says of the patch. The update closes up five CVE-listed security flaws, all cons...