Adobe Acrobat Reader vulnerabilities
1,107 known vulnerabilities affecting adobe/acrobat_reader.
Total CVEs
1,107
CISA KEV
21
actively exploited
Public exploits
43
Exploited in wild
25
Severity breakdown
CRITICAL352HIGH412MEDIUM316LOW27
Vulnerabilities
Page 45 of 56
CVE-2012-0777MEDIUMCVSS 6.8≥ 9.0, < 9.5.1≥ 10.0, < 10.1.32012-04-10
CVE-2012-0777 [MEDIUM] CWE-119 CVE-2012-0777: The JavaScript API in Adobe Reader and Acrobat 9.x before 9.5.1 and 10.x before 10.1.3 on Mac OS X a
The JavaScript API in Adobe Reader and Acrobat 9.x before 9.5.1 and 10.x before 10.1.3 on Mac OS X and Linux allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
nvd
CVE-2011-4369CRITICALCVSS 10.0Exploitedv9.0v9.1+22 more2011-12-16
CVE-2011-4369 [CRITICAL] CVE-2011-4369: Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windo
Unspecified vulnerability in the PRC component in Adobe Reader and Acrobat 9.x before 9.4.7 on Windows, Adobe Reader and Acrobat 9.x through 9.4.6 on Mac OS X, Adobe Reader and Acrobat 10.x through 10.1.1 on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX allows remote attackers to execute arbitrary code or cause a denial of service (memory
nvd
CVE-2011-2462CRITICALCVSS 9.8KEVPoC≤ 10.1.1≥ 9.0, ≤ 9.4.62011-12-07
CVE-2011-2462 [CRITICAL] CWE-787 CVE-2011-2462: Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Win
Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011.
nvd
CVE-2011-2437CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2437 [CRITICAL] CVE-2011-2437: Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x
Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2433 and CVE-2011-2434.
nvd
CVE-2011-2435CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2435 [CRITICAL] CWE-119 CVE-2011-2435: Buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1
Buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2011-2436CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2436 [CRITICAL] CWE-119 CVE-2011-2436: Heap-based buffer overflow in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1
Heap-based buffer overflow in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2011-2433CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2433 [CRITICAL] CWE-119 CVE-2011-2433: Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x
Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2434 and CVE-2011-2437.
nvd
CVE-2011-2431CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2431 [CRITICAL] CWE-264 CVE-2011-2431: Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers
Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "security bypass vulnerability."
nvd
CVE-2011-2434CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2434 [CRITICAL] CVE-2011-2434: Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x
Heap-based buffer overflow in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2433 and CVE-2011-2437.
nvd
CVE-2011-2440CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2440 [CRITICAL] CWE-399 CVE-2011-2440: Use-after-free vulnerability in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.
Use-after-free vulnerability in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2011-2438CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2438 [CRITICAL] CWE-119 CVE-2011-2438: Multiple stack-based buffer overflows in the image-parsing library in Adobe Reader and Acrobat 8.x b
Multiple stack-based buffer overflows in the image-parsing library in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2011-2432CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2432 [CRITICAL] CWE-119 CVE-2011-2432: Buffer overflow in the U3D TIFF Resource in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.
Buffer overflow in the U3D TIFF Resource in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2011-2441CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2441 [CRITICAL] CWE-119 CVE-2011-2441: Multiple stack-based buffer overflows in CoolType.dll in Adobe Reader and Acrobat 8.x before 8.3.1,
Multiple stack-based buffer overflows in CoolType.dll in Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2011-2442CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2442 [CRITICAL] CWE-20 CVE-2011-2442: Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers
Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "logic error vulnerability."
nvd
CVE-2011-2439CRITICALCVSS 9.3v8.0v8.1+34 more2011-09-15
CVE-2011-2439 [CRITICAL] CWE-399 CVE-2011-2439: Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers
Adobe Reader and Acrobat 8.x before 8.3.1, 9.x before 9.4.6, and 10.x before 10.1.1 allow attackers to execute arbitrary code via unspecified vectors, related to a "memory leakage condition vulnerability."
nvd
CVE-2011-1353MEDIUMCVSS 6.9v10.0v10.0.1+3 more2011-09-15
CVE-2011-1353 [MEDIUM] CVE-2011-1353: Unspecified vulnerability in Adobe Reader 10.x before 10.1.1 on Windows allows local users to gain p
Unspecified vulnerability in Adobe Reader 10.x before 10.1.1 on Windows allows local users to gain privileges via unknown vectors.
nvd
CVE-2011-2095CRITICALCVSS 9.3v8.0v8.1+33 more2011-06-16
CVE-2011-2095 [CRITICAL] CVE-2011-2095: Buffer overflow in Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 o
Buffer overflow in Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2011-2094 and CVE-2011-2097.
nvd
CVE-2011-2098CRITICALCVSS 9.3v8.0v8.1+33 more2011-06-16
CVE-2011-2098 [CRITICAL] CWE-119 CVE-2011-2098: Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac O
Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2099.
nvd
CVE-2011-2106CRITICALCVSS 9.3v8.0v8.1+33 more2011-06-16
CVE-2011-2106 [CRITICAL] CWE-119 CVE-2011-2106: Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Mac OS X allow at
Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
nvd
CVE-2011-2101CRITICALCVSS 9.3v8.0v8.1+33 more2011-06-16
CVE-2011-2101 [CRITICAL] CWE-94 CVE-2011-2101: Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac O
Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X do not properly restrict script, which allows attackers to execute arbitrary code via a crafted document, related to a "cross document script execution vulnerability."
nvd