Aller au contenu
Appaloosa Scout
HIGH 7.8 KEV

CVE-2023-21608

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS v3 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA Known Exploited Vulnerability

Ajouté au KEV
2023-10-10
Deadline remédiation
2023-10-31
Action requise
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Ransomware
Non

Apps mobiles affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
adobe acrobat_reader Android ≥20.001.30005 ≤20.005.30418 cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:classic:*:*:*
adobe acrobat_reader iOS ≥20.001.30005 ≤20.005.30418 cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:classic:*:*:*
Voir sur NVD ↗ Catalogue CISA KEV ↗