Files
CVEs-PoC/2020/CVE-2020-24433.md
T
2024-05-25 21:48:12 +02:00

18 lines
994 B
Markdown

### [CVE-2020-24433](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-24433)
![](https://img.shields.io/static/v1?label=Product&message=Acrobat%20Reader&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%3D%202017.011.30175%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Improper%20Access%20Control%20(CWE-284)&color=brighgreen)
### Description
Adobe Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a local privilege escalation vulnerability that could enable a user without administrator privileges to delete arbitrary files and potentially execute arbitrary code as SYSTEM. Exploitation of this issue requires an attacker to socially engineer a victim, or the attacker must already have some access to the environment.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/Live-Hack-CVE/CVE-2020-24433