Fiche créée le 2003-12-08 20:18:28, dernière mise à jour le 2008-03-02 23:47:09
Adobe Acrobat contains a flaw that allows a malicious user to inject arbitrary commands into a PDF document via hotlinks. A victim who receives a trojaned PDF file need only open the document for the commands to be executed in some cases.
|
| |
| Adobe Systems Incorporated 1.x Affected |
| Adobe Systems Incorporated 2.x Affected |
| Adobe Systems Incorporated 3.0 Affected |
| |
Attack Type : Other non listé ci-dessus. |
Découvert le 1997-05-08 07:00:00 |
| Disclosure : OSVDB Verified |
Confirmé le 1997-05-08 07:00:00 |
Exploit : Exploit Unknown Unsure of exploit status. |
Exploit découvert le 1970-01-01 07:00:00 |
Impact : Loss of Integrity Assurance that data is unaltered by unauthorized persons.
Examples: XSS, arbitrary command execution, most overflows, most format strings, SQL injection, unauthorized file modification/deletion/creation, remote file inclusion, etc. |
| |
Location : Remote / Network Access If network access if required and exploit can be done remotely. |
| |
| |
| External refs : |
| OSVDB 2928 |
| |
| |
| |
| |
| |