Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2014-9150

N/A

Race condition in the MoveFileEx call hook feature in Adobe Reader and Acrobat 11.x before 11.0.09 on Windows allows attackers to bypass a sandbox protection mechanism, and consequently write to files in arbitrary locations, via an NTFS junction attack, a similar issue to CVE-2014-0568.

EPSS 2.27% above median percentile 81.4%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

Vulnerable CPE configurations (1)
Vendor Product Versions
adobe acrobat_reader
Windows
View on NVD ↗ Advisory · helpx.adobe.com