Dreamweaver Desktop versions 21.7 and earlier are affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe dreamweaver |
|
| Vendors & Products |
Adobe
Adobe dreamweaver |
Tue, 09 Jun 2026 21:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 09 Jun 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Dreamweaver Desktop versions 21.7 and earlier are affected by an Incorrect Authorization vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. | |
| Title | Dreamweaver Desktop | Incorrect Authorization (CWE-863) | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2026-06-09T19:24:08.392Z
Updated: 2026-06-09T19:41:51.333Z
Reserved: 2026-05-20T15:50:31.359Z
Link: CVE-2026-47910
Updated: 2026-06-09T19:41:47.772Z
Status : Received
Published: 2026-06-09T20:17:00.177
Modified: 2026-06-09T20:17:00.177
Link: CVE-2026-47910
No data.