CRITICAL 9.8
KEV
CVE-2014-0546
Adobe Reader and Acrobat 10.x before 10.1.11 and 11.x before 11.0.08 on Windows allow attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via unspecified vectors.
CVSS v3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA Known Exploited Vulnerability
- Ajouté au KEV
- 2022-05-25
- Deadline remédiation
- 2022-06-15
- Action requise
- Apply updates per vendor instructions.
- Ransomware
- Non
Apps mobiles affectées
Configurations CPE vulnérables
| Vendor | Produit | Plateforme | Versions | CPE 2.3 URI |
|---|---|---|---|---|
| adobe | acrobat_reader | Android | ≥10.0 <10.1.11 | cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* |
| adobe | acrobat_reader | iOS | ≥10.0 <10.1.11 | cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* |
| adobe | acrobat_reader | Android | ≥11.0 <11.0.08 | cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* |
| adobe | acrobat_reader | iOS | ≥11.0 <11.0.08 | cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* |