Adobe Acrobat Reader vulnerabilities

1,107 known vulnerabilities affecting adobe/acrobat_reader.

Total CVEs
1,107
CISA KEV
21
actively exploited
Public exploits
43
Exploited in wild
25
Severity breakdown
CRITICAL352HIGH412MEDIUM316LOW27

Vulnerabilities

Page 42 of 56
CVE-2013-2727CRITICALCVSS 10.0v9.0v9.1+36 more2013-05-16
CVE-2013-2727 [CRITICAL] CWE-189 CVE-2013-2727: Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 1 Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-2729.
nvd
CVE-2013-2725CRITICALCVSS 10.0v9.0v9.1+36 more2013-05-16
CVE-2013-2725 [CRITICAL] CVE-2013-2725: Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attacke Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2720, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2726, CVE-2013-2731, CVE-2
nvd
CVE-2013-2724CRITICALCVSS 10.0v9.0v9.1+36 more2013-05-16
CVE-2013-2724 [CRITICAL] CWE-119 CVE-2013-2724: Stack-based buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11 Stack-based buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2013-2720CRITICALCVSS 10.0v9.0v9.1+36 more2013-05-16
CVE-2013-2720 [CRITICAL] CVE-2013-2720: Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attacke Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-2718, CVE-2013-2719, CVE-2013-2721, CVE-2013-2722, CVE-2013-2723, CVE-2013-2725, CVE-2013-2726, CVE-2013-2731, CVE-2
nvd
CVE-2013-2737MEDIUMCVSS 5.0v9.0v9.1+36 more2013-05-16
CVE-2013-2737 [MEDIUM] CWE-200 CVE-2013-2737: A JavaScript API in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 1 A JavaScript API in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and 11.x before 11.0.03 allows attackers to obtain sensitive information via unspecified vectors.
nvd
CVE-2013-2549HIGHCVSS 7.5v11.0.022013-03-11
CVE-2013-2549 [HIGH] CWE-94 CVE-2013-2549: Unspecified vulnerability in Adobe Reader 11.0.02 allows remote attackers to execute arbitrary code Unspecified vulnerability in Adobe Reader 11.0.02 allows remote attackers to execute arbitrary code via vectors related to a "break into the sandbox," as demonstrated by George Hotz during a Pwn2Own competition at CanSecWest 2013.
nvd
CVE-2013-2550HIGHCVSS 7.5v11.0.022013-03-11
CVE-2013-2550 [HIGH] CVE-2013-2550: Unspecified vulnerability in Adobe Reader 11.0.02 allows attackers to bypass the sandbox protection Unspecified vulnerability in Adobe Reader 11.0.02 allows attackers to bypass the sandbox protection mechanism via unknown vectors, as demonstrated by George Hotz during a Pwn2Own competition at CanSecWest 2013.
nvd
CVE-2013-0641HIGHCVSS 7.8KEV≥ 10.0, < 10.1.6≥ 11.0, < 11.0.02+1 more2013-02-14
CVE-2013-0641 [HIGH] CWE-120 CVE-2013-0641: Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11 Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allows remote attackers to execute arbitrary code via a crafted PDF document, as exploited in the wild in February 2013.
nvd
CVE-2013-0640HIGHCVSS 7.8KEVPoC≥ 10.0, < 10.1.6≥ 11.0, < 11.0.02+1 more2013-02-14
CVE-2013-0640 [HIGH] CWE-787 CVE-2013-0640: Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote Adobe Reader and Acrobat 9.x before 9.5.4, 10.x before 10.1.6, and 11.x before 11.0.02 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PDF document, as exploited in the wild in February 2013.
nvd
CVE-2013-0623CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0623 [CRITICAL] CVE-2013-0623: Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attacker Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-1530, CVE-2013-0601, CVE-2013-0605, CVE-2013-0616, CVE-2013-0619, and CVE-2013-0620.
nvd
CVE-2013-0617CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0617 [CRITICAL] CVE-2013-0617: Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11 Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0606, CVE-2013-0612, CVE-2013-0615, and CVE-2013-0621.
nvd
CVE-2013-0615CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0615 [CRITICAL] CVE-2013-0615: Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11 Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0606, CVE-2013-0612, CVE-2013-0617, and CVE-2013-0621.
nvd
CVE-2013-0609CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0609 [CRITICAL] CWE-189 CVE-2013-0609: Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 1 Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0613.
nvd
CVE-2013-0622CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0622 [CRITICAL] CWE-264 CVE-2013-0622: Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attacker Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to bypass intended access restrictions via unspecified vectors, a different vulnerability than CVE-2013-0624.
nvd
CVE-2013-0603CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0603 [CRITICAL] CWE-119 CVE-2013-0603: Heap-based buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11. Heap-based buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0604.
nvd
CVE-2013-0621CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0621 [CRITICAL] CVE-2013-0621: Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11 Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0606, CVE-2013-0612, CVE-2013-0615, and CVE-2013-0617.
nvd
CVE-2013-0616CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0616 [CRITICAL] CVE-2013-0616: Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attacker Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-1530, CVE-2013-0601, CVE-2013-0605, CVE-2013-0619, CVE-2013-0620, and CVE-2013-0623.
nvd
CVE-2013-0607CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0607 [CRITICAL] CWE-94 CVE-2013-0607: Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attacker Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error," a different vulnerability than CVE-2013-0608, CVE-2013-0611, CVE-2013-0614, and CVE-2013-0618.
nvd
CVE-2013-0619CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0619 [CRITICAL] CVE-2013-0619: Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attacker Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-1530, CVE-2013-0601, CVE-2013-0605, CVE-2013-0616, CVE-2013-0620, and CVE-2013-0623.
nvd
CVE-2013-0606CRITICALCVSS 10.0v9.0v9.1+30 more2013-01-10
CVE-2013-0606 [CRITICAL] CWE-119 CVE-2013-0606: Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11 Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0612, CVE-2013-0615, CVE-2013-0617, and CVE-2013-0621.
nvd