cvedb.io
CVE-2024-41865
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2024-08-14T15:15:31.227 · Last modified 2026-06-17T07:48:22.137

Summary

Dimension versions 3.4.11 and earlier are affected by an Untrusted Search Path vulnerability that could lead to arbitrary code execution. An attacker could exploit this vulnerability by inserting a malicious file into the search path, which the application might execute instead of the legitimate file. This could occur if the application uses a search path to locate executables or libraries. Exploitation of this issue requires user interaction.

Affected products

adobe — dimension

Does this affect you?

Add your gear to cvedb and we'll alert you only when adobe ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.