CVE-2005-1306

The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."
References
Link Resource
http://www.adobe.com/support/techdocs/331710.html Broken Link Patch Vendor Advisory
http://www.securityfocus.com/bid/13962 Broken Link Exploit Patch Third Party Advisory VDB Entry Vendor Advisory
http://www.adobe.com/support/techdocs/331710.html Broken Link Patch Vendor Advisory
http://www.securityfocus.com/bid/13962 Broken Link Exploit Patch Third Party Advisory VDB Entry Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:acrobat:7.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:7.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:7.0.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:57

Type Values Removed Values Added
References () http://www.adobe.com/support/techdocs/331710.html - Broken Link, Patch, Vendor Advisory () http://www.adobe.com/support/techdocs/331710.html - Broken Link, Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/13962 - Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory () http://www.securityfocus.com/bid/13962 - Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory

08 Feb 2024, 19:55

Type Values Removed Values Added
CVSS v2 : 5.0
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE NVD-CWE-Other CWE-611
References (CONFIRM) http://www.adobe.com/support/techdocs/331710.html - Patch, Vendor Advisory (CONFIRM) http://www.adobe.com/support/techdocs/331710.html - Broken Link, Patch, Vendor Advisory
References (BID) http://www.securityfocus.com/bid/13962 - Exploit, Patch, Vendor Advisory (BID) http://www.securityfocus.com/bid/13962 - Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory

Information

Published : 2005-06-15 04:00

Updated : 2024-11-20 23:57


NVD link : CVE-2005-1306

Mitre link : CVE-2005-1306

CVE.ORG link : CVE-2005-1306


JSON object : View

Products Affected

adobe

  • acrobat_reader
  • acrobat
CWE
CWE-611

Improper Restriction of XML External Entity Reference