Adobe Acrobat Reader vulnerabilities

1,107 known vulnerabilities affecting adobe/acrobat_reader.

Total CVEs
1,107
CISA KEV
21
actively exploited
Public exploits
43
Exploited in wild
25
Severity breakdown
CRITICAL352HIGH412MEDIUM316LOW27

Vulnerabilities

Page 48 of 56
CVE-2011-0587MEDIUMCVSS 4.3v8.0v8.1+25 more2011-02-10
CVE-2011-0587 [MEDIUM] CWE-79 CVE-2011-0587: Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2011-0604.
nvd
CVE-2010-4091CRITICALCVSS 9.3PoCv8.0v8.1+24 more2010-11-07
CVE-2010-4091 [CRITICAL] CWE-119 CVE-2010-4091: The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x bef The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document that triggers memory corruption, involving the printSeps function. NOTE: some of these deta
nvd
CVE-2010-3654CRITICALCVSS 9.3ExploitedPoCv9.0v9.1+10 more2010-10-29
CVE-2010-3654 [CRITICAL] CWE-119 CVE-2010-3654: Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Sol Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in Adobe Reader and Acrobat 9.x through 9.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applica
nvd
CVE-2010-3621CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3621 [CRITICAL] CVE-2010-3621: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-2010-3619, CVE-2010-3622, CVE-2010-3628, CVE-2010-3632, and CVE-2010-3658.
nvd
CVE-2010-3619CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3619 [CRITICAL] CVE-2010-3619: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-2010-3621, CVE-2010-3622, CVE-2010-3628, CVE-2010-3632, and CVE-2010-3658.
nvd
CVE-2010-3631CRITICALCVSS 9.3PoCv8.0v8.1+22 more2010-10-06
CVE-2010-3631 [CRITICAL] CWE-20 CVE-2010-3631: Array index error in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS X allows Array index error in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS X allows attackers to execute arbitrary code via unspecified vectors.
nvd
CVE-2010-3622CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3622 [CRITICAL] CVE-2010-3622: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-2010-3619, CVE-2010-3621, CVE-2010-3628, CVE-2010-3632, and CVE-2010-3658.
nvd
CVE-2010-3629CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3629 [CRITICAL] CVE-2010-3629: Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Window Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted image, a different vulnerability than CVE-2010-3620.
nvd
CVE-2010-3626CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3626 [CRITICAL] CVE-2010-3626: Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Window Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted font, a different vulnerability than CVE-2010-2889.
nvd
CVE-2010-3625CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3625 [CRITICAL] CWE-94 CVE-2010-3625: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code via unspecified vectors, related to a "prefix protocol handler vulnerability."
nvd
CVE-2010-2890CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-2890 [CRITICAL] CWE-119 CVE-2010-2890: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-3619, CVE-2010-3621, CVE-2010-3622, CVE-2010-3628, CVE-2010-3632, and CVE-2010-3658.
nvd
CVE-2010-2888CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-2888 [CRITICAL] CWE-20 CVE-2010-2888: Multiple unspecified vulnerabilities in an ActiveX control in Adobe Reader and Acrobat 8.x before 8. Multiple unspecified vulnerabilities in an ActiveX control in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Windows allow attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2010-3628CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3628 [CRITICAL] CVE-2010-3628: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-2010-3619, CVE-2010-3621, CVE-2010-3622, CVE-2010-3632, and CVE-2010-3658.
nvd
CVE-2010-3620CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3620 [CRITICAL] CWE-20 CVE-2010-3620: Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Window Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted image, a different vulnerability than CVE-2010-3629.
nvd
CVE-2010-3627CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3627 [CRITICAL] CWE-20 CVE-2010-3627: Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Window Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via unknown vectors.
nvd
CVE-2010-2887CRITICALCVSS 9.3v9.0v9.1+9 more2010-10-06
CVE-2010-2887 [CRITICAL] CVE-2010-2887: Multiple unspecified vulnerabilities in Adobe Reader and Acrobat 9.x before 9.4 on Linux allow attac Multiple unspecified vulnerabilities in Adobe Reader and Acrobat 9.x before 9.4 on Linux allow attackers to gain privileges via unknown vectors.
nvd
CVE-2010-2889CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-2889 [CRITICAL] CWE-20 CVE-2010-2889: Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Window Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted font, a different vulnerability than CVE-2010-3626.
nvd
CVE-2010-3658CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3658 [CRITICAL] CVE-2010-3658: Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attacke Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2010-2890, CVE-2010-3619, CVE-2010-3621, CVE-2010-3622, CVE-2010-3628, and CVE-2010-3632.
nvd
CVE-2010-3630CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3630 [CRITICAL] CVE-2010-3630: Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Window Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to cause a denial of service or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2010-3624CRITICALCVSS 9.3v8.0v8.1+22 more2010-10-06
CVE-2010-3624 [CRITICAL] CWE-20 CVE-2010-3624: Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Mac OS X allows attackers to execute arbitrary code via a crafted image.
nvd