Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2021-42727

46
FAUCET Score

CVE-2021-42727 is a stack overflow vulnerability in Adobe Bridge 11.1.1 and earlier, affecting Adobe and Microsoft Windows systems. This high-severity flaw (CVSS 7.8) allows for arbitrary code execution in the context of the current user, requiring user interaction to open a specially crafted file. While no public exploits (Metasploit, Nuclei, ExploitDB) or active exploitation are reported, and community discussion is minimal, the potential for significant impact remains.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2020.0.1CPE matchmatch criteria
cpe:2.3:a:adobe:robohelp_server:*:*:*:*:*:*:*:*
<= 11.1.1CPE match
cpe:2.3:a:adobe:bridge:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.1

7.8HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
1.8
Impact Score
5.9
CvssVersion
3.1

Exploit Intelligence

EPSS Score
39.40%
Probability of exploitation in next 30 days
EPSS Percentile
98.5%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.3940 is in the 99th percentile among its peer group of 11,617 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (1)

adobevendor investigatingvia nvd_reference
View patch

References

helpx.adobe.com / security/products/bridge/apsb21-94.html
Not ApplicableVendor Advisory