# CVE-2025-64896

## Summary

- **CVE ID:** CVE-2025-64896
- **Severity:** MEDIUM
- **CVSS Score:** 5.5 (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
- **CWE:** CWE-379
- **Published:** Dec 9, 2025
- **Last Modified:** Mar 12, 2026

## Description

Creative Cloud Desktop versions 6.4.0.361 and earlier are affected by a Creation of Temporary File in Directory with Incorrect Permissions vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to disrupt the application's functionality by manipulating temporary files. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

## Affected Products

- Adobe — Creative Cloud Desktop (0)

## References

- [CNA](https://helpx.adobe.com/security/products/creative-cloud/apsb25-120.html)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.18%
- **EPSS Percentile:** 8.2

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._