PT-2026-58790 · Adobe · Agsservice+1

CVE-2026-48344

·

Published

2026-07-14

·

Updated

2026-07-16

CVSS v3.1

7.8

High

VectorAV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Creative Cloud Desktop (affected versions not specified)
Description A Time-of-check Time-of-use (TOCTOU) Race Condition exists, which is a software bug where a program checks the state of a resource and then acts on that resource, but the state changes between the check and the action. This issue could allow arbitrary code execution in the context of the current user. Additionally, an incorrect permission assignment in the Adobe Creative Cloud AGSService could lead to local privilege escalation. Exploitation does not require user interaction, although it depends on conditions beyond the attacker's control.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Time Of Check To Time Of Use

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-09873
CVE-2026-48344
ZDI-26-420

Affected Products

Agsservice
Creative Cloud Desktop