Vulnerabilities > Adobe > Acrobat > Critical

DATE CVE VULNERABILITY TITLE RISK
2008-11-05 CVE-2008-4814 Improper Input Validation vulnerability in Adobe Acrobat and Acrobat Reader
Unspecified vulnerability in a JavaScript method in Adobe Reader and Acrobat 8.1.2 and earlier, and before 7.1.1, allows remote attackers to execute arbitrary code via unknown vectors, related to an "input validation issue."
network
adobe CWE-20
critical
9.3
2008-11-05 CVE-2008-4817 Improper Input Validation vulnerability in Adobe Acrobat and Acrobat Reader
The Download Manager in Adobe Acrobat Professional and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a crafted PDF document that calls an AcroJS function with a long string argument, triggering heap corruption.
network
adobe CWE-20
critical
9.3
2008-11-04 CVE-2008-2992 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Adobe Acrobat and Acrobat Reader
Stack-based buffer overflow in Adobe Acrobat and Reader 8.1.2 and earlier allows remote attackers to execute arbitrary code via a PDF file that calls the util.printf JavaScript function with a crafted format string argument, a related issue to CVE-2008-1104.
network
adobe CWE-119
critical
9.3
2008-05-08 CVE-2008-2042 Improper Input Validation vulnerability in Adobe Acrobat and Acrobat Reader
The Javascript API in Adobe Acrobat Professional 7.0.9 and possibly 8.1.1 exposes a dangerous method, which allows remote attackers to execute arbitrary commands or trigger a buffer overflow via a crafted PDF file that invokes app.checkForUpdate with a malicious callback function.
network
adobe CWE-20
critical
9.3
2008-02-12 CVE-2008-0726 Numeric Errors vulnerability in Adobe Acrobat and Acrobat Reader
Integer overflow in Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute arbitrary code via crafted arguments to the printSepsWithParams, which triggers memory corruption.
network
adobe CWE-189
critical
9.3
2008-02-12 CVE-2007-5659 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Adobe Acrobat and Acrobat Reader
Multiple buffer overflows in Adobe Reader and Acrobat 8.1.1 and earlier allow remote attackers to execute arbitrary code via a PDF file with long arguments to unspecified JavaScript methods.
network
adobe CWE-119
critical
9.3
2008-02-12 CVE-2007-5663 Code Injection vulnerability in Adobe Acrobat and Acrobat Reader
Adobe Reader and Acrobat 8.1.1 and earlier allows remote attackers to execute arbitrary code via a crafted PDF file that calls an insecure JavaScript method in the EScript.api plug-in.
network
adobe CWE-94
critical
9.3
2008-02-07 CVE-2008-0655 Arbitrary Code Execution and Security vulnerability in Adobe Acrobat and Reader
Multiple unspecified vulnerabilities in Adobe Reader and Acrobat before 8.1.2 have unknown impact and attack vectors.
network
adobe
critical
9.3
2007-09-21 CVE-2007-5020 Code Injection vulnerability in Adobe Acrobat and Acrobat Reader
Unspecified vulnerability in Adobe Acrobat and Reader 8.1 on Windows allows remote attackers to execute arbitrary code via a crafted PDF file, related to the mailto: option and Internet Explorer 7 on Windows XP.
network
adobe CWE-94
critical
9.3
2006-12-31 CVE-2006-5857 Resource Management Errors vulnerability in Adobe Acrobat and Acrobat Reader
Adobe Reader and Acrobat 7.0.8 and earlier allows user-assisted remote attackers to execute code via a crafted PDF file that triggers memory corruption and overwrites a subroutine pointer during rendering.
network
adobe CWE-399
critical
9.3