Lucene search

K
cve[email protected]CVE-2008-0883
HistoryMar 06, 2008 - 12:44 a.m.

CVE-2008-0883

2008-03-0600:44:00
CWE-59
web.nvd.nist.gov
24
cve-2008-0883
acroread
adobe acrobat reader
symlink attack
ssl certificate
local users
file overwrite

3.7 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.4%

acroread in Adobe Acrobat Reader 8.1.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files related to SSL certificate handling.

Affected configurations

NVD
Node
suseopen_suseMatch10.1
OR
suseopen_suseMatch10.2
OR
suseopen_suseMatch10.3
OR
susesuse_linuxMatch10enterprise_desktop
OR
susesuse_linuxMatch10enterprise_server
OR
susesuse_linuxMatch10sp1enterprise_desktop
OR
susesuse_linuxMatch10.0ppc
OR
susesuse_linuxMatch10.0x86
OR
susesuse_linuxMatch10.0x86_64
OR
susesuse_linuxMatch10.1ppc
OR
susesuse_linuxMatch10.1x86
OR
susesuse_linuxMatch10.1x86_64
OR
susesuse_linux_desktopMatch10
AND
adobeacrobat_readerMatch8.1.2

3.7 Low

CVSS2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:H/Au:N/C:P/I:P/A:P

6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

10.4%