CVE-2008-4817
- EPSS 31.79%
- Veröffentlicht 05.11.2008 15:00:14
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Download Manager in Adobe Acrobat Professional and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a crafted PDF document that calls an AcroJS function with a long string argument, triggering heap corruption.
CVE-2008-2992
- EPSS 93.74%
- Veröffentlicht 04.11.2008 18:29:47
- Zuletzt bearbeitet 22.10.2025 01:15:33
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string argument, a related issue to CVE-20...
- EPSS 6.06%
- Veröffentlicht 15.09.2008 15:14:05
- Zuletzt bearbeitet 09.04.2025 00:30:58
A certain ActiveX control in Adobe Acrobat 9, when used with Microsoft Windows Vista and Internet Explorer 7, allows remote attackers to cause a denial of service (browser crash) via an src property value with an invalid acroie:// URL.
CVE-2008-2042
- EPSS 4.48%
- Veröffentlicht 08.05.2008 00:20:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Javascript API in Adobe Acrobat Professional 7.0.9 and possibly 8.1.1 exposes a dangerous method, which allows remote attackers to execute arbitrary commands or trigger a buffer overflow via a crafted PDF file that invokes app.checkForUpdate with...
CVE-2008-0726
- EPSS 9.45%
- Veröffentlicht 12.02.2008 20:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute arbitrary code via crafted arguments to the printSepsWithParams, which triggers memory corruption.
CVE-2007-5659
- EPSS 93.12%
- Veröffentlicht 12.02.2008 19:00:00
- Zuletzt bearbeitet 22.10.2025 01:15:32
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code via a PDF file with long arguments to unspecified JavaScript methods. NOTE: this issue might be subsumed by CVE-2008-0655.
CVE-2007-5663
- EPSS 40.72%
- Veröffentlicht 12.02.2008 19:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file that calls an insecure JavaScript method in the EScript.api plug-in. NOTE: this issue might be subsumed by CVE-2008-0655.
CVE-2007-5666
- EPSS 0.31%
- Veröffentlicht 12.02.2008 19:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Untrusted search path vulnerability in Adobe Reader and Acrobat 8.1.1 and earlier allows local users to execute arbitrary code via a malicious Security Provider library in the reader's current working directory. NOTE: this issue might be subsumed by...
CVE-2008-0655
- EPSS 68.77%
- Veröffentlicht 07.02.2008 21:00:00
- Zuletzt bearbeitet 12.11.2025 15:15:34
Multiple unspecified vulnerabilities in Adobe Reader and Acrobat before 8.1.2 have unknown impact and attack vectors.
CVE-2007-5020
- EPSS 30.91%
- Veröffentlicht 21.09.2007 18:17:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in Adobe Acrobat and Reader 8.1 on Windows allows remote attackers to execute arbitrary code via a crafted PDF file, related to the mailto: option and Internet Explorer 7 on Windows XP. NOTE: this information is based upon ...