Vulnerability details :
 
Adobe Acrobat PDF Execute Arbitrary Command via Hotlink 
 
     Fiche

Fiche créée le 2003-12-08 20:18:28, dernière mise à jour le 2008-03-02 23:47:09

Adobe Acrobat contains a flaw that allows a malicious user to inject arbitrary commands into a PDF document via hotlinks. A victim who receives a trojaned PDF file need only open the document for the commands to be executed in some cases.



 
Adobe Systems Incorporated    1.x  Affected
Adobe Systems Incorporated    2.x  Affected
Adobe Systems Incorporated    3.0  Affected
 
Attack Type :  Other
 non listé ci-dessus.
 Découvert le 1997-05-08 07:00:00
 
Disclosure :  OSVDB Verified
 Confirmé le 1997-05-08 07:00:00
 
Exploit :  Exploit Unknown
 Unsure of exploit status.
 Exploit découvert le 1970-01-01 07:00:00
 
Impact :  Loss of Integrity
 Assurance that data is unaltered by unauthorized persons. Examples: XSS, arbitrary command execution, most overflows, most format strings, SQL injection, unauthorized file modification/deletion/creation, remote file inclusion, etc.
 
Location :  Remote / Network Access
 If network access if required and exploit can be done remotely.
 
 
External refs :
OSVDB  2928
  
 
 
 
 

 

 


Free consultation (search)
 
  Fill one or some of the fields below :
   
Vendor
 
Title
 
Vulnerability ref.
 
 
   
 
   
Individual alerts
 
You determine with one profile dynamic and assisted, all your material and software equipment.
We shall inform you then automatically, as soon as a notification of security will concern one or several elements of it profile.
Every notification is definite, consists of numerous information to determine risk and to protect itself from it.
 
Login:
Pass:
 
Free online subscription
© Power4Security.com - BMS Ltd UK 2007-2008 - powered by Power4Website.com