Skip to main content

Adobe Acrobat/Reader Scripting Code Execution Vulnerability

Last Update Date: 9 Oct 2013 09:33 Release Date: 9 Oct 2013 3219 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

A vulnerability has been identified in Adobe Acrobat/Reader. A remote user can cause arbitrary scripting code to be executed on the target user's system.

 

A remote user can create a specially crafted PDF file that, when loaded by the target user in a browser, will invoke a javascript URI and execute arbitrary scripting code on the target system.


Impact

  • Cross-Site Scripting

System / Technologies affected

  • Version 11.0.04

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (11.0.05).

Vulnerability Identifier


Source


Related Link