
====================================================================

                             CERT-Renater

                 Note d'Information No. 2021/VULN015
_____________________________________________________________________

DATE                : 12/01/2021

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Windows running Adobe Captivate versions 2019 up to
                                and including 11.5.1.499.

=====================================================================
https://helpx.adobe.com/security/products/captivate/apsb21-06.html
_____________________________________________________________________

Security hotfix available for Adobe Captivate | APSB21-06
Bulletin ID 	Date Published        Priority
APSB21-06 	January 12, 2021 	3


Summary

Adobe has released a security hotfix for Adobe Captivate.  This hotfix
addresses an important vulnerability.  Successful exploitation could
lead to privilege escalation in the context of the current user.



Affected versions

Product                 Version                             Platform
Adobe Captivate 2019 	11.5.1.499 and earlier versions      Windows


Solution

Adobe categorizes these updates with the following priority ratings and
recommends users update their installation to the newest version:

Product 	Version 	Platform 	Priority   Availability
Adobe Captivate 2019    	Hotfix 	Windows  3 	   Tech note

Note:

1.     Download Server.zip

2.     Unzip the file

3.     Replace the existing server.js file in “C:\Program
Files\Adobe\Adobe Captivate 2019 x64\ns”

4.     Restart Adobe Captivate


Vulnerability details

Vulnerability Category 	Vulnerability Impact   Severity    CVE Number
Uncontrolled Search Path Element   Privilege Escalation  Important
CVE-2021-21011


Acknowledgments

Adobe would like to thank Xavier DANEST from Decathlon for reporting
this issue and for working with Adobe to help protect our customers.



=========================================================
+ CERT-RENATER       |    tel : 01-53-94-20-44          +
+ 23/25 Rue Daviel   |    fax : 01-53-94-20-41          +
+ 75013 Paris        |    email:cert@support.renater.fr +
=========================================================


