Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe dreamweaver |
|
| Vendors & Products |
Adobe
Adobe dreamweaver |
Wed, 10 Jun 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dreamweaver Desktop versions 21.7 and earlier are affected by an Improper Access Control vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. | |
| Title | Dreamweaver Desktop | Improper Access Control (CWE-284) | |
| Weaknesses | CWE-284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2026-06-09T19:24:07.503Z
Updated: 2026-06-10T10:07:16.143Z
Reserved: 2026-05-20T15:50:31.359Z
Link: CVE-2026-47907
Updated: 2026-06-10T10:07:10.980Z
Status : Received
Published: 2026-06-09T20:16:59.803
Modified: 2026-06-09T20:16:59.803
Link: CVE-2026-47907
No data.