Vulnerabilities > Adobe > Acrobat Reader > 8.1.7

DATE CVE VULNERABILITY TITLE RISK
2009-10-19 CVE-2009-2993 Improper Input Validation vulnerability in Adobe Acrobat and Acrobat Reader
The JavaScript for Acrobat API in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 does not properly implement the (1) Privileged Context and (2) Safe Path restrictions for unspecified JavaScript methods, which allows remote attackers to create arbitrary files, and possibly execute arbitrary code, via the cPath parameter in a crafted PDF file.
network
adobe CWE-20
critical
9.3
2009-10-19 CVE-2009-2992 Improper Input Validation vulnerability in Adobe Acrobat and Acrobat Reader
An unspecified ActiveX control in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 does not properly validate input, which allows attackers to cause a denial of service via unknown vectors.
network
adobe CWE-20
4.3
2009-10-19 CVE-2009-2991 Remote vulnerability in RETIRED: Adobe Reader and Acrobat October 2009
Unspecified vulnerability in the Mozilla plug-in in Adobe Reader and Acrobat 8.x before 8.1.7, and possibly 7.x before 7.1.4 and 9.x before 9.2, might allow remote attackers to execute arbitrary code via unknown vectors.
network
adobe
critical
9.3
2009-10-19 CVE-2009-2990 Numeric Errors vulnerability in Adobe Acrobat and Acrobat Reader
Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to execute arbitrary code via unspecified vectors.
network
adobe CWE-189
critical
9.3
2009-10-19 CVE-2009-2987 Remote vulnerability in RETIRED: Adobe Reader and Acrobat October 2009
Unspecified vulnerability in an ActiveX control in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 on Windows allows remote attackers to cause a denial of service via unknown vectors.
network
adobe
4.3
2009-10-19 CVE-2009-2986 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Adobe Acrobat and Acrobat Reader
Multiple heap-based buffer overflows in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrary code via unspecified vectors.
network
adobe CWE-119
critical
9.3
2009-10-19 CVE-2009-2985 Resource Management Errors vulnerability in Adobe Acrobat and Acrobat Reader
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allow attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2009-2996.
network
adobe CWE-399
critical
9.3
2009-10-19 CVE-2009-2983 Resource Management Errors vulnerability in Adobe Acrobat and Acrobat Reader
Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 allow attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.
network
adobe CWE-399
critical
9.3
2009-10-19 CVE-2009-2982 Cryptographic Issues vulnerability in Adobe Acrobat and Acrobat Reader
An unspecified certificate in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow remote attackers to conduct a "social engineering attack" via unknown vectors.
network
adobe CWE-310
critical
9.3
2009-10-19 CVE-2009-2981 Improper Input Validation vulnerability in Adobe Acrobat and Acrobat Reader
Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly validate input, which might allow attackers to bypass intended Trust Manager restrictions via unspecified vectors.
network
adobe CWE-20
critical
9.3