7.5

CVE-2018-4993

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an NTLM SSO hash theft vulnerability. Successful exploitation could lead to information disclosure.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Acrobat Dc SwEdition classic Version >= 15.006.30060 <= 15.006.30417
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Acrobat Dc SwEdition continuous Version >= 15.008.20082 <= 18.011.20038
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Acrobat Dc SwEdition classic Version >= 17.011.30059 <= 17.011.30079
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Acrobat Reader Dc SwEdition classic Version >= 15.006.30060 <= 15.006.30417
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Acrobat Reader Dc SwEdition continuous Version >= 15.008.20082 <= 18.011.20038
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Adobe ≫ Acrobat Reader Dc SwEdition classic Version >= 17.011.30059 <= 17.011.30079
   Apple ≫ macOS X Version -
   Microsoft ≫ Windows Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 86.9% 0.997
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

http://www.securitytracker.com/id/1040920
Third Party Advisory
VDB Entry
https://helpx.adobe.com/security/products/acrobat/apsb18-09.html
Patch
Vendor Advisory
http://www.securityfocus.com/bid/104177
Third Party Advisory
VDB Entry