Adobe Acrobat Reader是美国奥多比(Adobe)公司的一款PDF查看器。该软件用于打印,签名和注释 PDF。 Adobe Acrobat Reader 存在缓冲区错误漏洞,该漏洞源于解析精心制作的文件时出现越界读取漏洞,这可能导致读取超出已分配内存结构的末尾。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Adobe | Acrobat Reader | unspecified ~ 23.001.20093 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-26406 | 7.8 HIGH | ZDI-CAN-20712: Net.HTTP.request URL restriction bypass |
| CVE-2023-26392 | 7.8 HIGH | ZDI-CAN-20235: Adobe Substance 3D Stager USD File Parsing Use-After-Free Remote Code Execu |
| CVE-2023-26417 | 7.8 HIGH | ZDI-CAN-20583: Adobe Acrobat Reader DC Popup Use-After-Free Remote Code Execution Vulnerab |
| CVE-2023-26408 | 7.8 HIGH | ZDI-CAN-20712: AnnotsString Object prototype pollution Restrictions Bypass Vulnerability |
| CVE-2023-26418 | 7.8 HIGH | ZDI-CAN-20311: Adobe Acrobat Reader DC AcroForm exportAsFDFStr Use-After-Free Remote Code |
| CVE-2023-26421 | 7.8 HIGH | ZDI-CAN-19832: Adobe Acrobat Reader DC Doc Object Integer Underflow Remote Code Execution |
| CVE-2023-26422 | 7.8 HIGH | ZDI-CAN-20176: Adobe Acrobat Reader DC AcroForm deleteItemAt Use-After-Free Remote Code Ex |
| CVE-2023-26423 | 7.8 HIGH | ZDI-CAN-20160: Adobe Acrobat Reader DC AcroForm insertItemAt Use-After-Free Remote Code Ex |
| CVE-2023-26424 | 7.8 HIGH | ZDI-CAN-19833: Adobe Acrobat Reader DC PDF Parsing Use-After-Free Remote Code Execution Vu |
| CVE-2023-26420 | 7.8 HIGH | ZDI-CAN-20227: Adobe Acrobat Reader DC AcroForm addField Use-After-Free Remote Code Execut |
| CVE-2023-26407 | 7.8 HIGH | ZDI-CAN-20712: Net.HTTP.request Arbitrary Command Execution |
| CVE-2023-26405 | 7.8 HIGH | ZDI-CAN-20712: Object Prototype pollution which leads to API Restrictions Bypass |
| CVE-2023-26402 | 7.8 HIGH | ZDI-CAN-20237: Adobe Substance 3D Stager USD File Parsing Out-Of-Bounds Read Remote Code E |
| CVE-2023-26396 | 7.8 HIGH | Adobe Acrobat Reader DC for macOS installer (AcroRdrDC_2200220191_MUI.pkg) contains a loca |
| CVE-2023-26395 | 7.8 HIGH | Adobe Acrobat parsing PDF Out-of-bounds Write Arbitrary code execution |
| CVE-2023-26394 | 7.8 HIGH | ZDI-CAN-20236: Adobe Substance 3D Stager USD File Parsing Heap-based Buffer Overflow Remot |
| CVE-2023-26393 | 7.8 HIGH | ZDI-CAN-20234: Adobe Substance 3D Stager USD File Parsing Out-Of-Bounds Read Remote Code E |
| CVE-2023-21582 | 7.8 HIGH | ZDI-CAN-18255: Adobe Digital Editions PDF File Parsing Out-Of-Bounds Write Remote Code Exe |
| CVE-2023-26391 | 7.8 HIGH | ZDI-CAN-20256: Adobe Substance 3D Stager USD File Parsing Out-Of-Bounds Read Remote Code E |
| CVE-2023-26390 | 7.8 HIGH | ZDI-CAN-20255: Adobe Substance 3D Stager USDA File Parsing Stack-based Buffer Overflow Rem |
Showing top 20 of 47 CVEs. View all on vendor page → →
No comments yet