CVE-2020-9552 is a heap-based buffer overflow vulnerability in Adobe Bridge version 10.0, affecting both Adobe and Microsoft Windows environments. This high-severity flaw, with a CVSS score of 7.8, requires user interaction (UI:R) and local access (AV:L) for successful exploitation, which could lead to arbitrary code execution. While there is no known active exploitation or public exploit code (Metasploit, Nuclei, ExploitDB), the vulnerability has garnered some community discussion and media coverage, indicating awareness. Its high FAUCET Risk Score of 92/100 and elevated EPSS score suggest a significant potential impact despite the lack of confirmed in-the-wild attacks.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0CPE matchmatch criteria | cpe:2.3:a:adobe:bridge:10.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.