Vulnerabilities > CVE-2020-24441 - Unspecified vulnerability in Adobe Acrobat Reader 20.6.0/20.6.2

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
adobe

Summary

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.

Vulnerable Configurations

Part Description Count
Application
Adobe
2