Lucene search

K
cveAdobeCVE-2016-4250
HistoryJul 13, 2016 - 2:00 a.m.

CVE-2016-4250

2016-07-1302:00:56
CWE-119
adobe
web.nvd.nist.gov
42
cve-2016-4250
adobe reader
acrobat
arbitrary code execution
denial of service
memory corruption
nvd
security vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.064

Percentile

93.8%

Adobe Reader and Acrobat before 11.0.17, Acrobat and Acrobat Reader DC Classic before 15.006.30198, and Acrobat and Acrobat Reader DC Continuous before 15.017.20050 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-4191, CVE-2016-4192, CVE-2016-4193, CVE-2016-4194, CVE-2016-4195, CVE-2016-4196, CVE-2016-4197, CVE-2016-4198, CVE-2016-4199, CVE-2016-4200, CVE-2016-4201, CVE-2016-4202, CVE-2016-4203, CVE-2016-4204, CVE-2016-4205, CVE-2016-4206, CVE-2016-4207, CVE-2016-4208, CVE-2016-4211, CVE-2016-4212, CVE-2016-4213, CVE-2016-4214, CVE-2016-4251, CVE-2016-4252, and CVE-2016-4254.

Affected configurations

Nvd
Node
applemac_os_x
OR
microsoftwindows
AND
adobeacrobatRange11.0.16
OR
adobeacrobat_dcRange15.006.30174classic
OR
adobeacrobat_dcRange15.016.20045continuous
OR
adobeacrobat_reader_dcRange15.006.30174classic
OR
adobeacrobat_reader_dcRange15.016.20045continuous
OR
adobereaderRange11.0.16
VendorProductVersionCPE
adobeacrobatcpe:/a:adobe:acrobat::::
adobeacrobat_dccpe:/a:adobe:acrobat_dc:::continuous:
adobeacrobat_reader_dccpe:/a:adobe:acrobat_reader_dc:::continuous:
adobeacrobat_dccpe:/a:adobe:acrobat_dc:::classic:
adobeacrobat_reader_dccpe:/a:adobe:acrobat_reader_dc:::classic:
adobereadercpe:/a:adobe:reader::::

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.064

Percentile

93.8%