CVE-2019-7097 is an insecure protocol implementation vulnerability in Adobe Dreamweaver versions 19.0 and earlier, affecting both Windows and macOS platforms. This flaw carries a CVSS score of 7.5 (HIGH) due to its potential for sensitive data disclosure through a relay attack on SMB requests, requiring no user interaction or privileges to exploit. While the vulnerability is significant, there is currently no public exploit code available (Metasploit, Nuclei, ExploitDB), and it is not listed on the CISA KEV catalog. Community discussion and media coverage are minimal, with only one article from BleepingComputer mentioning it as part of Adobe's April 2019 security updates.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 19.0CPE matchmatch criteria | cpe:2.3:a:adobe:dreamweaver:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.