Adobe Acrobat JavaScript Parsing...

- AV AC AU C I A
发布: 2003-05-07
修订: 2025-04-13

Adobe Acrobat Full has been reported prone to an input validation vulnerability. It has been reported that this issue presents itself as a flaw in the Adobe JavaScript parsing engine. An attacker may craft a malicious PDF file embedding JavaScript code that instructs Acrobat to write attacker supplied code into the users 'Plug-ins' folder. The arbitrary code contained in the malicious plugin would be executed in the context of the user running Adobe every time the vulnerable application is launched. It should be noted that Adobe have reported that Acrobat Reader is not affected.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息