7.8
CVE-2026-48340
- EPSS 0.17%
- Veröffentlicht 14.07.2026 20:35:17
- Zuletzt bearbeitet 28.08.2026 00:17:50
- Erkennungen
Bridge | Untrusted Pointer Dereference (CWE-822)
Bridge is affected by an Untrusted Pointer Dereference vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.17% | 0.066 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Adobe | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
|
CWE-822 Untrusted Pointer Dereference
The product obtains a value from an untrusted source, converts this value to a pointer, and dereferences the resulting pointer.
https://helpx.adobe.com/security/products/bridge/apsb26-81.html