Vulnerability Details CVE-2020-9747
Adobe Animate version 20.5 (and earlier) is affected by a double free vulnerability when parsing a crafted .fla file, which could result in arbitrary code execution in the context of the current user. This vulnerability requires user interaction to exploit.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.7%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2020-9747
-
cpe:2.3:a:adobe:animate:15.2.1.95
-
cpe:2.3:a:adobe:animate:20.5
-
cpe:2.3:o:microsoft:windows:-