PT-2005-1159 · Microsoft+1 · Internet Explorer+2

Publicado

2005-04-21

·

Atualizado

2011-03-08

·

CVE-2005-0035

CVSS v2.0

5.1

Média

VetorAV:N/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Adobe Acrobat and Acrobat Reader versions 7.0 and earlier
Description The issue allows remote attackers to determine the existence of arbitrary files when the Acrobat web control is used with Internet Explorer. This is possible via the LoadFile ActiveX method.
Recommendations For Adobe Acrobat and Acrobat Reader versions 7.0 and earlier, consider disabling the LoadFile ActiveX method as a temporary workaround until a patch is available. Restrict access to the Acrobat web control to minimize the risk of exploitation.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-0035

Produtos afetados

Acrobat Reader
Acrobat
Internet Explorer