Vulnerabilities > Adobe > Acrobat Reader > 5.0.9

DATE CVE VULNERABILITY TITLE RISK
2007-01-03 CVE-2007-0047 Remote Security vulnerability in Reader
CRLF injection vulnerability in Adobe Acrobat Reader Plugin before 8.0.0, when used with the Microsoft.XMLHTTP ActiveX object in Internet Explorer, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the javascript: URI in the (1) FDF, (2) XML, or (3) XFDF AJAX request parameters.
network
adobe
6.8
2007-01-03 CVE-2007-0046 Remote Security vulnerability in Reader
Double free vulnerability in the Adobe Acrobat Reader Plugin before 8.0.0, as used in Mozilla Firefox 1.5.0.7, allows remote attackers to execute arbitrary code by causing an error via a javascript: URI call to document.write in the (1) FDF, (2) XML, or (3) XFDF AJAX request parameters.
network
low complexity
adobe
7.5
2007-01-03 CVE-2007-0044 Cross-Site Request Forgery (CSRF) vulnerability in Adobe Acrobat, Acrobat 3D and Acrobat Reader
Adobe Acrobat Reader Plugin before 8.0.0 for the Firefox, Internet Explorer, and Opera web browsers allows remote attackers to force the browser to make unauthorized requests to other web sites via a URL in the (1) FDF, (2) xml, and (3) xfdf AJAX request parameters, following the # (hash) character, aka "Universal CSRF and session riding."
network
adobe CWE-352
4.3
2006-12-31 CVE-2006-5857 Resource Management Errors vulnerability in Adobe Acrobat and Acrobat Reader
Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attackers to execute code via a crafted PDF file that triggers memory corruption and overwrites a subroutine pointer during rendering.
network
adobe CWE-399
critical
9.3
2005-07-07 CVE-2005-1841 Unspecified vulnerability in Adobe Acrobat Reader 5.0.10/5.0.9
The control for Adobe Reader 5.0.9 and 5.0.10 on Linux, Solaris, HP-UX, and AIX creates temporary files with the permissions as specified in a user's umask, which could allow local users to read PDF documents of that user if the umask allows it.
local
low complexity
adobe
2.1
2005-07-05 CVE-2005-1625 Unspecified vulnerability in Adobe Acrobat Reader 5.0.10/5.0.9
Stack-based buffer overflow in the UnixAppOpenFilePerform function in Adobe Reader 5.0.9 and 5.0.10 for Unix allows remote attackers to execute arbitrary code via a PDF document with a long /Filespec tag.
network
low complexity
adobe
5.0
2005-01-10 CVE-2004-1152 Unspecified vulnerability in Adobe Acrobat Reader 5.0.9
Buffer overflow in the mailListIsPdf function in Adobe Acrobat Reader 5.09 for Unix allows remote attackers to execute arbitrary code via an e-mail message with a crafted PDF attachment.
network
low complexity
adobe
critical
10.0