Lucene search

K
cveMitreCVE-2006-6027
HistoryNov 21, 2006 - 11:07 p.m.

CVE-2006-6027

2006-11-2123:07:00
mitre
web.nvd.nist.gov
31
adobe reader
acropdf
activex
denial of service
code execution
vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.941

Percentile

99.2%

Adobe Reader (Adobe Acrobat Reader) 7.0 through 7.0.8 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long argument string to the LoadFile method in an AcroPDF ActiveX control.

Affected configurations

Nvd
Node
adobeacrobat_readerMatch7.0
OR
adobeacrobat_readerMatch7.0.1
OR
adobeacrobat_readerMatch7.0.2
OR
adobeacrobat_readerMatch7.0.3
OR
adobeacrobat_readerMatch7.0.4
OR
adobeacrobat_readerMatch7.0.5
OR
adobeacrobat_readerMatch7.0.6
OR
adobeacrobat_readerMatch7.0.7
OR
adobeacrobat_readerMatch7.0.8
VendorProductVersionCPE
adobeacrobat_reader7.0cpe:2.3:a:adobe:acrobat_reader:7.0:*:*:*:*:*:*:*
adobeacrobat_reader7.0.1cpe:2.3:a:adobe:acrobat_reader:7.0.1:*:*:*:*:*:*:*
adobeacrobat_reader7.0.2cpe:2.3:a:adobe:acrobat_reader:7.0.2:*:*:*:*:*:*:*
adobeacrobat_reader7.0.3cpe:2.3:a:adobe:acrobat_reader:7.0.3:*:*:*:*:*:*:*
adobeacrobat_reader7.0.4cpe:2.3:a:adobe:acrobat_reader:7.0.4:*:*:*:*:*:*:*
adobeacrobat_reader7.0.5cpe:2.3:a:adobe:acrobat_reader:7.0.5:*:*:*:*:*:*:*
adobeacrobat_reader7.0.6cpe:2.3:a:adobe:acrobat_reader:7.0.6:*:*:*:*:*:*:*
adobeacrobat_reader7.0.7cpe:2.3:a:adobe:acrobat_reader:7.0.7:*:*:*:*:*:*:*
adobeacrobat_reader7.0.8cpe:2.3:a:adobe:acrobat_reader:7.0.8:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.5

Confidence

Low

EPSS

0.941

Percentile

99.2%