[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249622

 
 

909

 
 

195549

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2002-0030Date: (C)2003-04-02   (M)2023-12-22


The digital signature mechanism for the Adobe Acrobat PDF viewer only verifies the PE header of executable code for a plug-in, which can allow attackers to execute arbitrary code in certified mode by making the plug-in appear to be signed by Adobe.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 4.6
Exploit Score: 3.9
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: LOCAL
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
http://lists.grok.org.uk/pipermail/full-disclosure/2003-March/004230.html
VU#549913
http://www.kb.cert.org/vuls/id/JSHA-5EZQGZ

CPE    12
cpe:/a:adobe:acrobat:4.0.5
cpe:/a:adobe:acrobat_reader:4.0.5
cpe:/a:adobe:acrobat_reader:5.0
cpe:/a:adobe:acrobat_reader:4.0
...

© SecPod Technologies