CVE-2020-3713 is a memory corruption vulnerability in Adobe Illustrator CC versions 24.0 and earlier, affecting both Adobe and Microsoft Windows platforms. This high-severity vulnerability (CVSS 7.8) requires user interaction (UI:R) and local access (AV:L) to exploit, but successful exploitation could lead to arbitrary code execution with high impact on confidentiality, integrity, and availability. While there is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB) is unavailable, and it is not listed in CISA's KEV catalog. Community discussion and media coverage are minimal, with only one article from BleepingComputer mentioning its inclusion in Adobe's January 2020 security updates.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 24.0.2CPE matchmatch criteria | cpe:2.3:a:adobe:illustrator_cc:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.