CVE-2018-16042

CWE-3473 documents3 sources
Severity
6.5MEDIUM
EPSS
4.6%
top 10.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 18
Latest updateMay 13

Description

Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a security bypass vulnerability. Successful exploitation could lead to information disclosure.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:NExploitability: 3.9 | Impact: 2.5

Affected Packages5 packages

NVDadobe/acrobat_reader_dc15.006.3006015.006.30457+5
NVDadobe/acrobat_dc15.006.3006015.006.30457+5
NVDadobe/reader11.0.10, 11.0.23+1
NVDiskysoft/pdfelement64 versions+3
NVDiskysoft/pdf_editor_66.4.2.3521, 6.6.2.3315, 6.7.6.3399+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-vpxh-p969-8368: Adobe Acrobat and Reader versions 20192022-05-13
CVEList
CVE-2018-16042: Adobe Acrobat and Reader versions 20192019-01-18
CVE-2018-16042 (MEDIUM CVSS 6.5) | Adobe Acrobat and Reader versions 2 | cvebase.io