Security Bypass in Adobe Acrobat Reader Affecting Multiple Versions
CVE-2017-2947
5.5MEDIUM
Key Information:
- Vendor
- Adobe
- Vendor
- CVE Published:
- 11 January 2017
Summary
Adobe Acrobat Reader is impacted by a security bypass vulnerability that arises from improper handling of Form Data Format (FDF). This flaw can be exploited, allowing attackers to manipulate data in ways that bypassing intended security controls. Users of affected versions should apply patches or upgrade to mitigate potential security risks associated with this issue.
Affected Version(s)
Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier. Adobe Acrobat Reader 15.020.20042 and earlier, 15.006.30244 and earlier, 11.0.18 and earlier.
References
CVSS V3.1
Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved