Adobe Connect version 11.2.3 (and earlier) is affected by a Deserialization of Untrusted Data vulnerability to achieve arbitrary method invocation when AMF messages are deserialized on an Adobe Connect server. An attacker can leverage this to execute remote code execution on the server.
History

Wed, 23 Apr 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: adobe

Published: 2021-10-21T19:33:44.022Z

Updated: 2025-04-23T19:24:36.012Z

Reserved: 2021-09-08T00:00:00.000Z

Link: CVE-2021-40719

cve-icon Vulnrichment

Updated: 2024-08-04T02:51:06.652Z

cve-icon NVD

Status : Modified

Published: 2021-10-21T20:15:08.337

Modified: 2024-11-21T06:24:37.717

Link: CVE-2021-40719

cve-icon Redhat

No data.