This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
| Summuary | |
|---|---|
| CPE Name | cpe:/a:adobe:acrobat_reader |
| Detail | |||
|---|---|---|---|
| Vendor | Adobe | First view | 1999-09-27 |
| Product | Acrobat Reader | Last view | 2013-05-16 |
| Version | Type | Application | |
| Edition | |||
| Language | |||
| Update | |||
Activity : Yearly
COMMON PLATFORM ENUMERATION : Repartition per Version
This CPE Product have more than 100 Versions. If you want to see a complete summary for this CPE, please contact us.
Related : CVE
This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 10 | 2013-05-16 | CVE-2013-3342 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-3341 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-3340 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-3339 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-3338 | Network | Low | None Requ... | |
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 10 | 2013-05-16 | CVE-2013-3337 | Network | Low | None Requ... | |
| 5 | 2013-05-16 | CVE-2013-2737 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2736 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2735 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2734 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2733 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2732 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2731 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2730 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2729 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2727 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2726 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2725 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2724 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2723 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2722 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2721 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2720 | Network | Low | None Requ... | |
| 10 | 2013-05-16 | CVE-2013-2719 | Network | Low | None Requ... |
CWE : Common Weakness Enumeration
| % | id | Name |
|---|---|---|
| 57% (131) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
| 13% (30) | CWE-20 | Improper Input Validation |
| 7% (18) | CWE-94 | Failure to Control Generation of Code ('Code Injection') |
| 7% (16) | CWE-399 | Resource Management Errors |
| 6% (14) | CWE-189 | Numeric Errors |
| % | id | Name |
|---|---|---|
| 3% (8) | CWE-264 | Permissions, Privileges, and Access Controls |
| 2% (5) | CWE-79 | Failure to Preserve Web Page Structure ('Cross-site Scripting') |
| 0% (1) | CWE-352 | Cross-Site Request Forgery (CSRF) |
| 0% (1) | CWE-310 | Cryptographic Issues |
| 0% (1) | CWE-200 | Information Exposure |
| 0% (1) | CWE-59 | Improper Link Resolution Before File Access ('Link Following') |
| 0% (1) | CWE-16 | Configuration |
Oval Markup Language : Definitions
This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| OvalID | Name |
|---|---|
| oval:org.mitre.oval:def:2919 | Adobe Acrobat Reader .ETD Document Code Execution Vulnerability |
| oval:org.mitre.oval:def:11698 | Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attack... |
| oval:org.mitre.oval:def:10042 | Adobe Acrobat Reader Plugin before 8.0.0 for the Firefox, Internet Explorer, ... |
| oval:org.mitre.oval:def:9693 | Multiple cross-site scripting (XSS) vulnerabilities in Adobe Acrobat Reader P... |
| oval:org.mitre.oval:def:6487 | Adobe Reader and Acrobat Multiple Vulnerabilities |
| id | Name |
|---|---|
| oval:org.mitre.oval:def:9684 | Double free vulnerability in the Adobe Acrobat Reader Plugin before 8.0.0, as... |
| oval:org.mitre.oval:def:6348 | Adobe Reader and Acrobat DoS via long sequence of # (hash) characters |
| oval:org.mitre.oval:def:9813 | Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow... |
| oval:org.mitre.oval:def:9928 | Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute... |
| oval:org.mitre.oval:def:11161 | Untrusted search path vulnerability in Adobe Reader and Acrobat 8.1.1 and ear... |
| oval:org.mitre.oval:def:10299 | Multiple unspecified vulnerabilities in Adobe Reader and Acrobat before 8.1.2... |
| oval:org.mitre.oval:def:9731 | The DOC.print function in the Adobe JavaScript API, as used by Adobe Acrobat ... |
| oval:org.mitre.oval:def:10957 | Integer overflow in Adobe Reader and Acrobat 8.1.1 and earlier allows remote ... |
| oval:org.mitre.oval:def:5697 | Buffer overflow in Adobe Reader 9.0 and earlier (APSA09-01) |
| oval:org.mitre.oval:def:5719 | Adobe Reader and Acrobat getPlus_HelperSvc.exe) local elevation of privileges |
| oval:org.mitre.oval:def:6280 | Adobe Reader and Acrobat denial of service via a crafted document |
| oval:org.mitre.oval:def:5964 | Adobe Reader and Acrobat DoS or possibly execute arbitrary code via unspecifi... |
| oval:org.mitre.oval:def:6284 | Adobe Reader and Acrobat bypass intended Trust Manager restrictions via unspe... |
| oval:org.mitre.oval:def:6365 | Adobe Reader and Acrobat social engineering attack via unknown vectors |
| oval:org.mitre.oval:def:5636 | Adobe Reader and Acrobat cause DoS (memory corruption) or execute arbitrary c... |
| oval:org.mitre.oval:def:6145 | Adobe Reader and Acrobat cause DoS and Arbitrary Execution |
| oval:org.mitre.oval:def:5888 | Adobe Reader and Acrobat cause arbitrary code execution via unspecified vectors |
| oval:org.mitre.oval:def:6274 | Adobe Reader and Acrobat cause denial of service via unknown vectors |
| oval:org.mitre.oval:def:6483 | Adobe Reader and Acrobat cause Denial of Service Vulnerability |
| oval:org.mitre.oval:def:6371 | Adobe Reader and Acrobat allow attackers to execute arbitrary code via unspec... |
Open Source Vulnerability Database (OSVDB)
This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| id | Description |
|---|---|
| 78248 | Adobe Reader/Acrobat Unspecified Memory Corruption (2011-4373) |
| 78247 | Adobe Reader/Acrobat rt3d.dll PDF Embedded BMP Image Handling Overflow |
| 78246 | Adobe Reader/Acrobat Unspecified Heap Memory Corruption |
| 78245 | Adobe Reader/Acrobat Unspecified Memory Corruption (2011-4370) |
| 78026 | Adobe Reader / Acrobat PRC Component Remote Memory Corruption |
| id | Description |
|---|---|
| 77529 | Adobe Reader / Acrobat U3D Data Handling Remote Memory Corruption |
| 75441 | Adobe Reader / Acrobat CoolType.dll Multiple Unspecified Overflows |
| 75440 | Adobe Reader / Acrobat Logic Error Unspecified Memory Corruption |
| 75439 | Adobe Reader / Acrobat Use-after-free PDF Embedded JPG File Handling Remote C... |
| 75438 | Adobe Reader / Acrobat Memory Leakage Condition Unspecified Remote Code Execu... |
| 75437 | Adobe Reader / Acrobat Image Parsing Library Multiple Unspecified Overflow |
| 75436 | Adobe Reader / Acrobat Unspecified Overflow (2011-2437) |
| 75435 | Adobe Reader / Acrobat Image Parsing Library Unspecified Overflow |
| 75434 | Adobe Reader / Acrobat Unspecified Overflow (2011-2435) |
| 75433 | Adobe Reader / Acrobat Unspecified Overflow (2011-2434) |
| 75432 | Adobe Reader / Acrobat Unspecified Overflow (2011-2433) |
| 75431 | Adobe Reader / Acrobat U3D TIFF Resource Handling Overflow |
| 75430 | Adobe Reader / Acrobat Unspecified Security Bypass Remote Code Execution |
| 75429 | Adobe Reader / Acrobat Unspecified Local Privilege Escalation |
| 73068 | Adobe Reader / Acrobat Unspecified Memory Corruption (2011-2106) |
| 73067 | Adobe Reader / Acrobat Font Handling Memory Corruption |
| 73066 | Adobe Reader / Acrobat Unspecified Memory Corruption DoS |
| 73065 | Adobe Reader / Acrobat Unspecified Memory Corruption (2011-2103) |
| 73064 | Adobe Reader / Acrobat Unspecified Security Bypass |
| 73063 | Adobe Reader / Acrobat Unspecified XSS |
Milw0rm Exploits
| id | Description |
|---|---|
| 2009-07-20 | Adobe related service (getPlus_HelperSvc.exe) Local Privilege Escalation |
| 2009-02-23 | Adobe Acrobat Reader JBIG2 Local Buffer Overflow PoC #2 0day |
| 2009-02-23 | Multiple PDF Readers JBIG2 Local Buffer Overflow PoC |
| 2008-11-05 | Adobe Reader util.printf() JavaScript Function Stack Overflow Exploit #2 |
| 2008-11-05 | Adobe Reader util.printf() JavaScript Function Stack Overflow Exploit |
| id | Description |
|---|---|
| 5687 | Adobe Acrobat Reader <= 8.1.2 Malformed PDF Remote DOS PoC |
ExploitDB Exploits
| id | Description |
|---|---|
| 18366 | Adobe Reader U3D Memory Corruption Vulnerability |
| 17488 | Adobe Reader 5.1 XFDF Buffer Overflow Vulnerability (SEH) |
| 17473 | Adobe Reader X Atom Type Confusion Vulnerability Exploit |
| 17187 | Adobe Flash Player < 10.1.53 .64 Action Script Type Confusion Exploit (DEP+AS... |
| 17175 | Adobe Flash Player 10.2.153.1 SWF Memory Corruption Vulnerability |
| id | Description |
|---|---|
| 17027 | Adobe Flash Player AVM Bytecode Verification |
| 16687 | Adobe Flash Player "newfunction" Invalid Pointer Use |
| 16667 | Adobe Flash Player "Button" Remote Code Execution |
| 16619 | Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow |
| 16614 | Adobe Flash Player "newfunction" Invalid Pointer Use |
| 16494 | Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow |
| 15212 | Adobe Acrobat and Reader Array Indexing Remote Code Execution Vulnerability |
| 15086 | MOAUB #23 - Adobe Acrobat Reader and Flash 'newfunction' Remote Code Executio... |
| 14982 | MOAUB #12 - Adobe Acrobat and Reader "pushstring" Memory Corruption |
| 14853 | MOAUB #1 - Adobe Acrobat Reader and Flash Player |
| 14121 | Adobe Reader 9.3.2 (CoolType.dll) Remote Memory Corruption / DoS Vulnerability |
| 13787 | 0day Exploit for Adobe Flash and Reader PoC (from the wild) |
| 10618 | Adobe Reader and Acrobat (CVE-2009-4324) Exploit |
| 9865 | Adobe Acrobat Reader 7-9 U3D BoF |
| 7006 | Adobe Reader util.printf() JavaScript Function Stack Overflow Exploit #2 |
Metasploit Exploits
| id | Description |
|---|---|
| 2008-02-08 | Adobe util.printf() Buffer Overflow |
| 2008-02-08 | Adobe util.printf() Buffer Overflow |
| 2009-10-13 | Adobe U3D CLODProgressiveMeshDeclaration Array Overrun |
| 2009-10-13 | Adobe U3D CLODProgressiveMeshDeclaration Array Overrun |
| 2011-12-06 | Adobe Reader U3D Memory Corruption Vulnerability |
| id | Description |
|---|---|
| 2010-03-29 | Adobe PDF Escape EXE Social Engineering (No JavaScript) |
| 2010-03-29 | Adobe PDF Embedded EXE Social Engineering |
| 2009-02-19 | Adobe JBIG2Decode Memory Corruption |
| 2009-02-19 | Adobe JBIG2Decode Heap Corruption |
| 2011-03-15 | Adobe Flash Player AVM Bytecode Verification Vulnerability |
| 2011-04-11 | Adobe Flash Player 10.2.153.1 SWF Memory Corruption Vulnerability |
| 2010-06-04 | Adobe Flash Player "newfunction" Invalid Pointer Use |
| 2010-06-04 | Adobe Flash Player "newfunction" Invalid Pointer Use |
| 2010-10-28 | Adobe Flash Player "Button" Remote Code Execution |
| 2009-12-14 | Adobe Doc.media.newPlayer Use After Free Vulnerability |
| 2009-12-14 | Adobe Doc.media.newPlayer Use After Free Vulnerability |
| 2010-09-07 | Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow |
| 2010-09-07 | Adobe CoolType SING Table "uniqueName" Stack Buffer Overflow |
| 2008-02-08 | Adobe Collab.collectEmailInfo() Buffer Overflow |
| 2010-02-16 | Adobe Acrobat Bundled LibTIFF Integer Overflow |












