Adobe Acrobat Dc vulnerabilities
1,798 known vulnerabilities affecting adobe/acrobat_dc.
Total CVEs
1,798
CISA KEV
7
actively exploited
Public exploits
30
Exploited in wild
15
Severity breakdown
CRITICAL449HIGH859MEDIUM456LOW34
Vulnerabilities
Page 60 of 90
CVE-2017-2941P3HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2941 [HIGH] CWE-119 CVE-2017-2941: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability when processing Compact Font Format data. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2016-1092P3HIGHCVSS 7.5≤ 15.006.30121≤ 15.010.200602016-05-11
CVE-2016-1092 [HIGH] CVE-2016-1092: Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172,
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to obtain sensitive information from process memory via unspecified vectors, a different vulnerability than CVE-2016-1079.
nvd
CVE-2017-2965P3HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2965 [HIGH] CWE-119 CVE-2017-2965: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability in the image conversion engine, related to TIFF file parsing. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2020-24429P3HIGHCVSS 7.8≤ 17.011.30175≤ 20.012.200482020-11-05
CVE-2020-24429 [HIGH] CWE-347 CVE-2020-24429: Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.3
Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) for macOS are affected by a signature verification bypass that could result in local privilege escalation. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2017-2944P3HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2944 [HIGH] CWE-119 CVE-2017-2944: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability when parsing crafted TIFF image files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2017-2940P3HIGHCVSS 7.8≤ 15.006.30244≤ 15.020.200422017-01-11
CVE-2017-2940 [HIGH] CWE-119 CVE-2017-2940: Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlie
Adobe Acrobat Reader versions 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier have an exploitable memory corruption vulnerability when processing JPEG 2000 files. Successful exploitation could lead to arbitrary code execution.
nvd
CVE-2019-8099P3HIGHCVSS 7.5≥ 15.006.30060, < 15.006.30499≥ 15.008.20082, < 19.012.20036+1 more2019-08-20
CVE-2019-8099 [HIGH] CWE-190 CVE-2019-8099: Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.3
Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have an integer overflow vulnerability. Successful exploitation could lead to information disclosure.
nvd
CVE-2015-6694P3MEDIUMCVSS 6.8≥ 15.006.30060, < 15.006.30094≥ 15.008.20082, < 15.009.200692015-10-14
CVE-2015-6694 [MEDIUM] CVE-2015-6694: Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted use of the fillColor attribute, a differe
nvd
CVE-2015-6686P3MEDIUMCVSS 6.8≥ 15.006.30060, < 15.006.30094≥ 15.008.20082, < 15.009.200692015-10-14
CVE-2015-6686 [MEDIUM] CVE-2015-6686: Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted set of fields, a different vulnerabilit
nvd
CVE-2015-6693P3MEDIUMCVSS 6.8≥ 15.006.30060, < 15.006.30094≥ 15.008.20082, < 15.009.200692015-10-14
CVE-2015-6693 [MEDIUM] CVE-2015-6693: The signatureSetSeedValue method in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.
The signatureSetSeedValue method in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted arg
nvd
CVE-2015-6695P3MEDIUMCVSS 6.8≥ 15.006.30060, < 15.006.30094≥ 15.008.20082, < 15.009.200692015-10-14
CVE-2015-6695 [MEDIUM] CVE-2015-6695: Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC
Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted use of the value attribute, a different v
nvd
CVE-2019-7030P3HIGHCVSS 7.5≥ 15.006.30060, ≤ 15.006.30464≥ 15.008.20082, ≤ 19.010.20069+1 more2019-05-24
CVE-2019-7030 [HIGH] CWE-190 CVE-2019-7030: Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.3
Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an integer overflow vulnerability. Successful exploitation could lead to information disclosure.
nvd
CVE-2018-4905P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4905 [MEDIUM] CWE-125 CVE-2018-4905: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of TIFF processing within the XPS module. A successful atta
nvd
CVE-2018-4884P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4884 [MEDIUM] CWE-125 CVE-2018-4884: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of the image conversion engine when processing Enhanced Met
nvd
CVE-2018-4886P3MEDIUMCVSS 6.5≥ 15.0, ≤ 15.006.30394≥ 18.0, ≤ 18.009.200502018-02-27
CVE-2018-4886 [MEDIUM] CWE-125 CVE-2018-4886: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation occurs in the image conversion engine when processing Enhanced Meta
nvd
CVE-2018-4900P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4900 [MEDIUM] CWE-125 CVE-2018-4900: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of JavaScript manipulation of an Annotation object. A succe
nvd
CVE-2018-4889P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4889 [MEDIUM] CWE-125 CVE-2018-4889: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of the XPS image conversion. A successful attack can lead t
nvd
CVE-2018-4896P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4896 [MEDIUM] CWE-125 CVE-2018-4896: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of the image conversion module that handles Enhanced Metafi
nvd
CVE-2018-4909P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4909 [MEDIUM] CWE-125 CVE-2018-4909: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of the image conversion module when processing metadata in
nvd
CVE-2018-4907P3MEDIUMCVSS 6.5≥ -, ≤ 18.009.20050≥ 15.0, ≤ 15.006.303942018-02-27
CVE-2018-4907 [MEDIUM] CWE-125 CVE-2018-4907: An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070
An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and earlier versions, 2017.011.30070 and earlier versions, 2015.006.30394 and earlier versions. This vulnerability occurs as a result of computation that reads data that is past the end of the target buffer; the computation is part of the TIFF processing in the XPS module. A successful atta
nvd