CVE-2008-4814
- EPSS 27.14%
- Veröffentlicht 05.11.2008 15:00:14
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in a JavaScript method in Adobe Reader and Acrobat 8.1.2 and earlier, and before 7.1.1, allows remote attackers to execute arbitrary code via unknown vectors, related to an "input validation issue."
CVE-2008-4815
- EPSS 5.71%
- Veröffentlicht 05.11.2008 15:00:14
- Zuletzt bearbeitet 09.04.2025 00:30:58
Untrusted search path vulnerability in Adobe Reader and Acrobat 8.1.2 and earlier on Unix and Linux allows attackers to gain privileges via a Trojan Horse program in an unspecified directory that is associated with an insecure RPATH.
CVE-2008-4816
- EPSS 3.09%
- Veröffentlicht 05.11.2008 15:00:14
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Download Manager in Adobe Reader 8.1.2 and earlier on Windows allows remote attackers to change Internet Security options on a client machine via unknown vectors.
CVE-2008-4817
- EPSS 17.07%
- Veröffentlicht 05.11.2008 15:00:14
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Download Manager in Adobe Acrobat Professional and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a crafted PDF document that calls an AcroJS function with a long string argument, triggering heap corruption.
CVE-2008-2992
- EPSS 93.38%
- Veröffentlicht 04.11.2008 18:29:47
- Zuletzt bearbeitet 09.04.2025 00:30:58
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string argument, a related issue to CVE-20...
- EPSS 3.3%
- Veröffentlicht 15.09.2008 15:14:05
- Zuletzt bearbeitet 09.04.2025 00:30:58
A certain ActiveX control in Adobe Acrobat 9, when used with Microsoft Windows Vista and Internet Explorer 7, allows remote attackers to cause a denial of service (browser crash) via an src property value with an invalid acroie:// URL.
CVE-2008-2042
- EPSS 4.48%
- Veröffentlicht 08.05.2008 00:20:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Javascript API in Adobe Acrobat Professional 7.0.9 and possibly 8.1.1 exposes a dangerous method, which allows remote attackers to execute arbitrary commands or trigger a buffer overflow via a crafted PDF file that invokes app.checkForUpdate with...
CVE-2008-0726
- EPSS 8.4%
- Veröffentlicht 12.02.2008 20:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute arbitrary code via crafted arguments to the printSepsWithParams, which triggers memory corruption.
CVE-2007-5659
- EPSS 93.26%
- Veröffentlicht 12.02.2008 19:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code via a PDF file with long arguments to unspecified JavaScript methods. NOTE: this issue might be subsumed by CVE-2008-0655.
CVE-2007-5663
- EPSS 43.97%
- Veröffentlicht 12.02.2008 19:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file that calls an insecure JavaScript method in the EScript.api plug-in. NOTE: this issue might be subsumed by CVE-2008-0655.