InCopy versions 20.3, 19.5.3 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Metrics
Affected Vendors & Products
References
History
Fri, 11 Jul 2025 18:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Adobe
Adobe incopy Apple Apple macos Microsoft Microsoft windows |
|
CPEs | cpe:2.3:a:adobe:incopy:*:*:*:*:*:*:*:* cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
|
Vendors & Products |
Adobe
Adobe incopy Apple Apple macos Microsoft Microsoft windows |
Wed, 09 Jul 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 08 Jul 2025 22:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | InCopy versions 20.3, 19.5.3 and earlier are affected by an Access of Uninitialized Pointer vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file. | |
Title | InCopy | Access of Uninitialized Pointer (CWE-824) | |
Weaknesses | CWE-824 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: adobe
Published: 2025-07-08T22:17:11.004Z
Updated: 2025-07-10T03:55:13.418Z
Reserved: 2025-04-30T20:47:55.000Z
Link: CVE-2025-47098

Updated: 2025-07-09T18:59:51.860Z

Status : Analyzed
Published: 2025-07-08T23:15:23.850
Modified: 2025-07-11T17:46:00.307
Link: CVE-2025-47098

No data.