The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."
References
Link | Resource |
---|---|
http://www.adobe.com/support/techdocs/331710.html | Broken Link Patch Vendor Advisory |
http://www.securityfocus.com/bid/13962 | Broken Link Exploit Patch Third Party Advisory VDB Entry Vendor Advisory |
http://www.adobe.com/support/techdocs/331710.html | Broken Link Patch Vendor Advisory |
http://www.securityfocus.com/bid/13962 | Broken Link Exploit Patch Third Party Advisory VDB Entry Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.adobe.com/support/techdocs/331710.html - Broken Link, Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/13962 - Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory |
08 Feb 2024, 19:55
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 5.0
v3 : 7.5 |
CWE | CWE-611 | |
References | (CONFIRM) http://www.adobe.com/support/techdocs/331710.html - Broken Link, Patch, Vendor Advisory | |
References | (BID) http://www.securityfocus.com/bid/13962 - Broken Link, Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory |
Information
Published : 2005-06-15 04:00
Updated : 2024-11-20 23:57
NVD link : CVE-2005-1306
Mitre link : CVE-2005-1306
CVE.ORG link : CVE-2005-1306
JSON object : View
Products Affected
adobe
- acrobat_reader
- acrobat
CWE
CWE-611
Improper Restriction of XML External Entity Reference