Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session.
References
Configurations
History
No history.
Information
Published : 2006-04-13 22:02
Updated : 2024-02-28 10:42
NVD link : CVE-2006-1787
Mitre link : CVE-2006-1787
CVE.ORG link : CVE-2006-1787
JSON object : View
Products Affected
adobe
- document_server
CWE