7.5

CVE-2003-0434

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Acrobat Version 5.0.6
Xpdf ≫ Xpdf Version 1.1
Mandrakesoft ≫ Mandrake Linux Version 9.0
Mandrakesoft ≫ Mandrake Linux Version 9.1
Redhat ≫ Enterprise Linux Version 2.1 Edition advanced_server
Redhat ≫ Enterprise Linux Version 2.1 Edition enterprise_server
Redhat ≫ Enterprise Linux Version 2.1 Edition workstation
Redhat ≫ Linux Version 7.1
Redhat ≫ Linux Version 7.2
Redhat ≫ Linux Version 7.3
Redhat ≫ Linux Version 8.0
Redhat ≫ Linux Version 9.0
Redhat ≫ Linux Advanced Workstation Version 2.1 Edition itanium
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 40.94% 0.985
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://lists.grok.org.uk/pipermail/full-disclosure/2003-June/005719.html
http://marc.info/?l=bugtraq&m=105777963019186&w=2
http://secunia.com/advisories/9037
http://secunia.com/advisories/9038
http://www.kb.cert.org/vuls/id/200132
US Government Resource
http://www.mandriva.com/security/advisories?name=MDKSA-2003:071
http://www.redhat.com/support/errata/RHSA-2003-196.html
Patch
Vendor Advisory
http://www.redhat.com/support/errata/RHSA-2003-197.html
Patch
Vendor Advisory
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A664