Adobe Pass versions 3.7.3 and earlier are affected by an Incorrect Authorization vulnerability. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read and write access. Exploitation of this issue requires user interaction in that a victim must install a malicious SDK.
Metrics
Affected Vendors & Products
References
History
Fri, 14 Nov 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 12 Nov 2025 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adobe
Adobe pass |
|
| Vendors & Products |
Adobe
Adobe pass |
Tue, 11 Nov 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Adobe Pass versions 3.7.3 and earlier are affected by an Incorrect Authorization vulnerability. An attacker could leverage this vulnerability to bypass security measures and gain unauthorized read and write access. Exploitation of this issue requires user interaction in that a victim must install a malicious SDK. | |
| Title | Adobe Pass | Incorrect Authorization (CWE-863) | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: adobe
Published: 2025-11-11T18:28:53.431Z
Updated: 2025-11-14T15:27:57.373Z
Reserved: 2025-10-01T17:52:06.980Z
Link: CVE-2025-61830
Updated: 2025-11-12T14:22:38.149Z
Status : Undergoing Analysis
Published: 2025-11-11T19:15:35.130
Modified: 2025-11-12T16:19:12.850
Link: CVE-2025-61830
No data.