cbcvebase.
CVE-2019-7046
published 2019-05-24

CVE-2019-7046: Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier…

PriorityP346critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
4.41%
90.3th percentile
Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an untrusted pointer dereference vulnerability. Successful exploitation could lead to arbitrary code execution .

Affected

7 ranges
VendorProductVersion rangeFixed in
adobeacrobat_dc15.006.30060 – 15.006.30464
adobeacrobat_dc15.008.20082 – 19.010.20069
adobeacrobat_dc17.011.30059 – 17.011.30113
adobeacrobat_reader_dc15.006.30060 – 15.006.30464
adobeacrobat_reader_dc15.008.20082 – 19.010.20069
adobeacrobat_reader_dc17.011.30059 – 17.011.30113
adobeadobe_acrobat_and_reader

CVSS provenance

nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.