CVE-2020-24441

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.
Configurations

Configuration 1 (hide)

cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:android:*:*

History

21 Nov 2024, 05:14

Type Values Removed Values Added
References () https://helpx.adobe.com/security/products/reader-mobile/apsb20-71.html - Patch, Vendor Advisory () https://helpx.adobe.com/security/products/reader-mobile/apsb20-71.html - Patch, Vendor Advisory

Information

Published : 2020-11-12 15:15

Updated : 2024-11-21 05:14


NVD link : CVE-2020-24441

Mitre link : CVE-2020-24441

CVE.ORG link : CVE-2020-24441


JSON object : View

Products Affected

adobe

  • acrobat_reader
CWE
CWE-284

Improper Access Control

NVD-CWE-Other