Show filters
30 Total Results
Displaying 21-30 of 30
Sort by:
Attacker Value
Unknown
CVE-2007-0045
Disclosure Date: January 03, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2, for Mozilla Firefox, Microsoft Internet Explorer 6 SP1, Google Chrome, Opera 8.5.4 build 770, and Opera 9.10.8679 on Windows allow remote attackers to inject arbitrary JavaScript and conduct other attacks via a .pdf URL with a javascript: or res: URI with (1) FDF, (2) XML, and (3) XFDF AJAX parameters, or (4) an arbitrarily named name=URI anchor identifier, aka "Universal XSS (UXSS)."
0
Attacker Value
Unknown
CVE-2006-5857
Disclosure Date: December 31, 2006 (last updated October 04, 2023)
Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attackers to execute code via a crafted PDF file that triggers memory corruption and overwrites a subroutine pointer during rendering.
0
Attacker Value
Unknown
CVE-2006-3452
Disclosure Date: July 12, 2006 (last updated October 04, 2023)
Adobe Reader and Acrobat 6.0.4 and earlier, on Mac OSX, has insecure file and directory permissions, which allows local users to gain privileges by overwriting program files.
0
Attacker Value
Unknown
CVE-2006-3093
Disclosure Date: June 19, 2006 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Adobe Acrobat Reader (acroread) before 7.0.8 have unknown impact and unknown vectors.
0
Attacker Value
Unknown
CVE-2006-0525
Disclosure Date: February 02, 2006 (last updated February 22, 2025)
Multiple Adobe products, including (1) Photoshop CS2, (2) Illustrator CS2, and (3) Adobe Help Center, install a large number of .EXE and .DLL files with write-access permission for the Everyone group, which allows local users to gain privileges via Trojan horse programs.
0
Attacker Value
Unknown
CVE-2005-2470
Disclosure Date: August 16, 2005 (last updated February 22, 2025)
Buffer overflow in a "core application plug-in" for Adobe Reader 5.1 through 7.0.2 and Acrobat 5.0 through 7.0.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown
CVE-2005-0035
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The Acrobat web control in Adobe Acrobat and Acrobat Reader 7.0 and earlier, when used with Internet Explorer, allows remote attackers to determine the existence of arbitrary files via the LoadFile ActiveX method.
0
Attacker Value
Unknown
CVE-2004-1153
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Format string vulnerability in Adobe Acrobat Reader 6.0.0 through 6.0.2 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an .ETD document containing format string specifiers in (1) title or (2) baseurl fields.
0
Attacker Value
Unknown
CVE-2004-1598
Disclosure Date: October 12, 2004 (last updated February 22, 2025)
Adobe Acrobat and Acrobat Reader 6.0 allow remote attackers to read arbitrary files via a PDF file that contains an embedded Shockwave (swf) file that references files outside of the temporary directory.
0
Attacker Value
Unknown
CVE-2004-0629
Disclosure Date: September 28, 2004 (last updated February 22, 2025)
Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versions, allows remote attackers to execute arbitrary code via a URI for a PDF file with a null terminator (%00) followed by a long string.
0