Improper Cryptographic Signature Verification in Adobe Acrobat Products
CVE-2025-64786

3.3LOW

Key Information:

Vendor

Adobe

Vendor
CVE Published:
9 December 2025

What is CVE-2025-64786?

An improper verification of the cryptographic signature vulnerability affects multiple versions of Adobe Acrobat Reader, which may lead to security feature bypass. Attackers can exploit this vulnerability to gain limited unauthorized write access to files without requiring any interaction from users, increasing the risk of data integrity issues and unauthorized modifications.

Affected Version(s)

Acrobat Reader 0 <= 20.005.30803

References

CVSS V3.1

Score:
3.3
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.