Vulnerabilities > Adobe > Low
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2006-04-13 | CVE-2006-1785 | Remote vulnerability in Adobe Document Server 6.0 Adobe Document Server for Reader Extensions 6.0 allows remote authenticated users to inject arbitrary web script via a leading (1) ftp or (2) http URI in the ReaderURL variable in the "Update Download Site" section of ads-readerext. | 2.1 |
2006-04-13 | CVE-2006-1786 | Remote vulnerability in Adobe Document Server 6.0 Cross-site scripting (XSS) vulnerability in Adobe Document Server for Reader Extensions 6.0 allows remote attackers to inject arbitrary web script or HTML via (1) the actionID parameter in ads-readerext and (2) the op parameter in AlterCast. | 2.6 |
2006-04-13 | CVE-2006-1787 | Remote vulnerability in Adobe Document Server 6.0 Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session. | 2.6 |
2006-04-13 | CVE-2006-1788 | Remote vulnerability in Adobe Document Server 6.0 Adobe Document Server for Reader Extensions 6.0, during log on, provides different error messages depending on whether the user ID is valid or invalid, which allows remote attackers to more easily identify valid user IDs via brute force attacks. | 2.6 |
2006-03-16 | CVE-2006-1182 | Remote Command Execution vulnerability in Adobe Graphics Server / Document Server Adobe Graphics Server 2.0 and 2.1 (formerly AlterCast) and Adobe Document Server (ADS) 5.0 and 6.0 allows local users to read files with certain extensions or overwrite arbitrary files and execute code via a crafted SOAP request to the AlterCast web service in which the request uses the (1) saveContent or (2) saveOptimized ADS commands, or the (3) loadContent command. | 2.6 |
2005-08-24 | CVE-2005-1842 | Local Privilege Escalation vulnerability in Adobe Version Cue for Mac OS X VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, creates temporary log files with predictable names, which allows local users to modify arbitrary files via a symlink attack. | 2.1 |
2005-07-07 | CVE-2005-1841 | Unspecified vulnerability in Adobe Acrobat Reader 5.0.10/5.0.9 The control for Adobe Reader 5.0.9 and 5.0.10 on Linux, Solaris, HP-UX, and AIX creates temporary files with the permissions as specified in a user's umask, which could allow local users to read PDF documents of that user if the umask allows it. | 2.1 |
2005-05-02 | CVE-2005-0492 | Improper Input Validation vulnerability in Adobe Acrobat Reader 6.0.3/7.0 Adobe Acrobat Reader 6.0.3 and 7.0.0 allows remote attackers to cause a denial of service (application crash) via a PDF file that contains a negative Count value in the root page node. | 2.6 |
2002-12-31 | CVE-2002-1764 | Unspecified vulnerability in Adobe Acrobat Reader 4.0.5 acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files. | 2.1 |
2002-10-04 | CVE-2002-1017 | Unspecified vulnerability in Adobe Digital Editions Adobe eBook Reader 2.1 and 2.2 allows a user to copy eBooks to other systems by using the backup feature, capturing the encryption Challenge, and using the appropriate hash function to generate the activation code. | 2.1 |