5.5
CVE-2025-43579
- EPSS 0.17%
- Veröffentlicht 10.06.2025 19:11:35
- Zuletzt bearbeitet 27.06.2025 15:14:49
- Erkennungen
Acrobat Reader | Information Exposure (CWE-200)
Acrobat Reader versions 24.001.30235, 20.005.30763, 25.001.20521 and earlier are affected by an Information Exposure vulnerability that could result in a Security feature bypass. An attacker could leverage this vulnerability to gain unauthorized access to sensitive information. Exploitation of this issue does not require user interaction.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Adobe ≫ Acrobat Dc SwEdition continuous Version >= 15.008.20082 < 25.001.20531
Adobe ≫ Acrobat Reader Dc SwEdition continuous Version >= 15.008.20082 < 25.001.20531
Adobe ≫ Acrobat Dc SwEdition continuous Version >= 15.008.20082 < 25.001.20529
Adobe ≫ Acrobat Reader Dc SwEdition continuous Version >= 15.008.20082 < 25.001.20529
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.17% | 0.067 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| Adobe | 5.5 | 1.8 | 3.6 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
https://helpx.adobe.com/security/products/acrobat/apsb25-57.html