Adobe Updates
2799Warning Date
Severity Level
Warning Number
Target Sector
9 September, 2020
● Critical
2020-1735
All
Description:
Adobe has released security updates to address multiple vulnerabilities in the following products:
- Adobe InDesign - macOS
- 15.1.1 and below
- Adobe Framemaker - Windows
- 2019.0.6 and below
- Adobe Experience Manager
- 6.5.5.0 and earlier versions
- 6.4.8.1 and earlier versions
- 6.3.3.8 and earlier versions
- 6.2 SP1-CFP20 and earlier versions
- AEM Forms add-on
- AEM Forms Service Pack 5 and earlier versions
Threats:
Attacker could exploit these vulnerabilities by doing the following:
- Cross-site scripting (XSS) attack.
- Execute arbitrary code.
Best practice and Recommendations:
The CERT team encourages users to review Adobe security advisory and apply the necessary updates:
- https://helpx.adobe.com/security/products/indesign/apsb20-52.html
- https://helpx.adobe.com/security/products/framemaker/apsb20-54.html
- https://helpx.adobe.com/security/products/experience-manager/apsb20-56.html
Update instructions:
Adobe InDesign:
Adobe Framemaker:
Adobe Experience Manager: