[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Adobe Reader 9.3.1 on Windows does not restrict the contents of one text field in the Launch File warning dialog

ID: oval:org.mitre.oval:def:7466Date: (C)2010-05-14   (M)2023-11-27
Class: VULNERABILITYFamily: windows




Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, do not restrict the contents of one text field in the Launch File warning dialog, which makes it easier for remote attackers to trick users into executing an arbitrary local program that was specified in a PDF document, as demonstrated by a text field that claims that the Open button will enable the user to read an encrypted message.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Vista
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 10
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows 8.1
Product:
Adobe Reader
Adobe Acrobat
Reference:
CVE-2010-1240
CVE    1
CVE-2010-1240
CPE    4
cpe:/a:adobe:reader:9:::x86
cpe:/a:adobe:acrobat:8:::x86
cpe:/a:adobe:acrobat:9:::x86
cpe:/a:adobe:reader:8:::x86
...

© SecPod Technologies