cbcvebase.

Adobe Acrobat Reader Dc vulnerabilities

1,798 known vulnerabilities affecting adobe/acrobat_reader_dc.

Total CVEs
1,798
CISA KEV
7
actively exploited
Public exploits
30
Exploited in wild
15
Severity breakdown
CRITICAL449HIGH859MEDIUM456LOW34

Vulnerabilities

Page 89 of 90
CVE-2019-8037P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30499≥ 15.008.20082, < 19.012.20036+1 more2019-08-20
CVE-2019-8037 [MEDIUM] CWE-125 CVE-2019-8037: Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.3 Adobe Acrobat and Reader versions 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2021-40729P4LOWCVSS 3.3≥ 15.008.20082, ≤ 21.007.20095≥ 15.008.20082, ≤ 21.007.200962021-10-15
CVE-2021-40729 [LOW] CWE-125 CVE-2021-40729: Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is affected by a out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this iss
nvd
CVE-2021-35988P4LOWCVSS 3.3≥ 15.008.20082, ≤ 21.005.20054≥ 17.011.30059, ≤ 17.011.30197+1 more2021-08-20
CVE-2021-35988 [LOW] CWE-125 CVE-2021-35988: Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an Out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user in
nvd
CVE-2021-35987P4LOWCVSS 3.3≥ 15.008.20082, ≤ 21.005.20054≥ 17.011.30059, ≤ 17.011.30197+1 more2021-08-20
CVE-2021-35987 [LOW] CWE-125 CVE-2021-35987: Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by an out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose arbitrary memory information in the context of the current user. Exploitation of this issue requires user in
nvd
CVE-2025-54255P4MEDIUMCVSS 4.0≥ 15.008.20082, < 25.001.206932025-09-09
CVE-2025-54255 [MEDIUM] CWE-657 CVE-2025-54255: Acrobat Reader versions 24.001.30254, 20.005.30774, 25.001.20672 and earlier are affected by a Viola Acrobat Reader versions 24.001.30254, 20.005.30774, 25.001.20672 and earlier are affected by a Violation of Secure Design Principles vulnerability that could result in a security feature bypass impacting integrity. An attacker does not have to be authenticated. Exploitation of this issue does not require user interaction, and scope is unchanged.
nvd
CVE-2019-8189P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8189 [MEDIUM] CWE-125 CVE-2019-8189: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2019-8190P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8190 [MEDIUM] CWE-125 CVE-2019-8190: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2019-8172P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8172 [MEDIUM] CWE-125 CVE-2019-8172: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2019-8173P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8173 [MEDIUM] CWE-125 CVE-2019-8173: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2019-8163P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8163 [MEDIUM] CWE-125 CVE-2019-8163: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2019-8064P4MEDIUMCVSS 4.3≥ 15.006.30060, < 15.006.30504≥ 15.008.20082, < 19.021.20047+1 more2019-10-17
CVE-2019-8064 [MEDIUM] CWE-125 CVE-2019-8064: Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011 Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .
nvd
CVE-2020-24438P4LOWCVSS 3.3≤ 17.011.30175≤ 20.012.200482020-11-05
CVE-2020-24438 [LOW] CWE-416 CVE-2020-24438: Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by a use-after-free vulnerability that could result in a memory address leak. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
nvd
CVE-2023-29299P4MEDIUMCVSS 4.7≥ 15.008.20082, < 23.003.202692023-08-10
CVE-2023-29299 [MEDIUM] CWE-426 CVE-2023-29299: Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected Adobe Acrobat Reader versions 23.003.20244 (and earlier) and 20.005.30467 (and earlier) are affected by an Untrusted Search Path vulnerability that could lead to Application denial-of-service. An attacker could leverage this vulnerability if the default PowerShell Set-ExecutionPolicy is set to Unrestricted, making the attack complexity high. Exploit
nvd
CVE-2021-40730P4LOWCVSS 3.3≥ 15.008.20082, ≤ 21.007.20095≥ 15.008.20082, ≤ 21.007.200962021-10-15
CVE-2021-40730 [LOW] CWE-416 CVE-2021-40730: Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is affected by a use-after-free that allow a remote attacker to disclose sensitive information on affected installations of of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerabil
nvd
CVE-2021-39858P4LOWCVSS 3.3≥ 20.006.20034, ≤ 21.005.200602021-09-29
CVE-2021-39858 [LOW] CWE-125 CVE-2021-39858: Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2021.005.20060 (and earlier), 2020.004.30006 (and earlier) and 2017.011.30199 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of arbitrary memory information in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a mal
nvd
CVE-2021-21089P4LOWCVSS 3.3≥ 20.006.20034, ≤ 20.013.20074≥ 20.001.30005, ≤ 20.001.30018+1 more2021-09-30
CVE-2021-21089 [LOW] CWE-125 CVE-2021-21089: Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2 Acrobat Reader DC versions versions 2020.013.20074 (and earlier), 2020.001.30018 (and earlier) and 2017.011.30188 (and earlier) are affected by an out-of-bounds Read vulnerability. An unauthenticated attacker could leverage this vulnerability to locally escalate privileges in the context of the current user. Exploitation of this issue requires user int
nvd
CVE-2017-3032P4LOWCVSS 3.3≤ 15.006.30280≤ 15.023.200702017-04-12
CVE-2017-3032 [LOW] CWE-125 CVE-2017-3032: Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlie Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 code-stream parser.
nvd
CVE-2020-24434P4LOWCVSS 3.3≤ 17.011.30175≤ 20.012.200482020-11-05
CVE-2020-24434 [LOW] CWE-125 CVE-2020-24434: Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interacti
nvd
CVE-2020-24426P4LOWCVSS 3.3≤ 17.011.30175≤ 20.012.200482020-11-05
CVE-2020-24426 [LOW] CWE-125 CVE-2020-24426: Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2020.012.20048 (and earlier), 2020.001.30005 (and earlier) and 2017.011.30175 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interacti
nvd
CVE-2021-28643P4LOWCVSS 3.3≥ 15.008.20082, ≤ 21.005.20054≥ 17.011.30059, ≤ 17.011.30197+1 more2021-08-20
CVE-2021-28643 [LOW] CWE-843 CVE-2021-28643: Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.3 Acrobat Reader DC versions 2021.005.20054 (and earlier), 2020.004.30005 (and earlier) and 2017.011.30197 (and earlier) are affected by a Type Confusion vulnerability. An unauthenticated attacker could leverage this vulnerability to disclose sensitive memory information in the context of the current user. Exploitation of this issue requires user interac
nvd
Adobe Acrobat Reader Dc vulnerabilities | cvebase