Jump to content

Adobe Acrobat vulnerability


nellie2
 Share

Recommended Posts

Overview: A vulnerability within Adobe Reader and Adobe Acrobat has been identified. Under certain circumstances using XML scripts, it is possible to discover the existence of local files.

Adobe has solutions available that can rectify these issues. Please refer to the "Recommendations" section for further information.

Effect: If exploited, it may be possible to discover the existence of local files on an end-user system.

Details: The vulnerability is within the Adobe Reader control. If an XML script is embedded in JavaScript, it is possible to discover the existence of local files. An attacker could then use the information gathered for malicious purposes.

However, the impact is minimized due to the fact that the existence of local files can only be discovered if the complete filenames and paths are known in advance by the attacker.

Recommendations:

Perform one of the following tasks:

-- If you use Adobe Reader 7.x on Windows or Mac OS, download the update to Adobe Reader 7.0.2 from the Adobe website at www.adobe.com/support/downloads/ .

-- If you use Adobe Acrobat 7.x on Windows or Mac OS, download the update to Adobe Acrobat 7.0.2 from the Adobe website at www.adobe.com/support/downloads/ .

More here

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

 Share

×
×
  • Create New...

Important Information

We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue. Privacy Policy