Lucene search

K
cveMitreCVE-2013-2549
HistoryMar 11, 2013 - 10:55 a.m.

CVE-2013-2549

2013-03-1110:55:01
CWE-94
mitre
web.nvd.nist.gov
40
cve-2013-2549
adobe reader
remote code execution
sandbox
george hotz
pwn2own
cansecwest

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.106

Percentile

95.1%

Unspecified vulnerability in Adobe Reader 11.0.02 allows remote attackers to execute arbitrary code via vectors related to a “break into the sandbox,” as demonstrated by George Hotz during a Pwn2Own competition at CanSecWest 2013.

Affected configurations

Nvd
Node
adobeacrobat_readerMatch11.0.02
VendorProductVersionCPE
adobeacrobat_reader11.0.02cpe:/a:adobe:acrobat_reader:11.0.02:::

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.106

Percentile

95.1%