PT-2026-58790 · Adobe · Agsservice+1
CVE-2026-48344
·
Published
2026-07-14
·
Updated
2026-07-16
CVSS v3.1
7.8
High
| Vector | AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Creative Cloud Desktop (affected versions not specified)
Description
A Time-of-check Time-of-use (TOCTOU) Race Condition exists, which is a software bug where a program checks the state of a resource and then acts on that resource, but the state changes between the check and the action. This issue could allow arbitrary code execution in the context of the current user. Additionally, an incorrect permission assignment in the Adobe Creative Cloud AGSService could lead to local privilege escalation. Exploitation does not require user interaction, although it depends on conditions beyond the attacker's control.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Time Of Check To Time Of Use
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Agsservice
Creative Cloud Desktop