CVE-2016-1008

Untrusted search path vulnerability in Adobe Reader and Acrobat before 11.0.15, Acrobat and Acrobat Reader DC Classic before 15.006.30121, and Acrobat and Acrobat Reader DC Continuous before 15.010.20060 on Windows and OS X allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:*
cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:*
cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader_dc:*:*:*:*:continuous:*:*:*
cpe:2.3:a:adobe:acrobat_reader_dc:15.006.30119:*:*:*:classic:*:*:*
OR cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:45

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/84216 - () http://www.securityfocus.com/bid/84216 -
References () http://www.securitytracker.com/id/1035199 - () http://www.securitytracker.com/id/1035199 -
References () http://www.zerodayinitiative.com/advisories/ZDI-16-190 - () http://www.zerodayinitiative.com/advisories/ZDI-16-190 -
References () https://helpx.adobe.com/security/products/acrobat/apsb16-09.html - Patch, Vendor Advisory () https://helpx.adobe.com/security/products/acrobat/apsb16-09.html - Patch, Vendor Advisory

Information

Published : 2016-03-09 11:59

Updated : 2024-11-21 02:45


NVD link : CVE-2016-1008

Mitre link : CVE-2016-1008

CVE.ORG link : CVE-2016-1008


JSON object : View

Products Affected

adobe

  • acrobat_dc
  • acrobat_reader
  • acrobat_reader_dc
  • acrobat

apple

  • mac_os_x

microsoft

  • windows
CWE
CWE-20

Improper Input Validation