|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Windows >> Adobe PDF Plug-In < 8.0 Vulnerability Assessment Details
|
Adobe PDF Plug-In < 8.0 |
||
Checks version of nppdf32.dll Detailed Explanation for this Vulnerability Assessment Summary : The browser test on the remote Windows host is affected by multiple issues. Description : The version of Adobe PDF Plug-In installed on the remote host is earlier than 7.0.9 / 8.0 and reportedly fails to properly sanitize input to the 'FDF', 'XML', or 'XFDF' fields used by its 'Open Parameters' feature. By tricking a user to access a specially-crafted link and depending on the browser with which the test is used, a remote attacker may be able to leverage these issues to conduct arbitrary code execution, denial of service, cross-site script forgery, or cross-site scripting attacks against a user on the remote host. See also : http://www.wisec.it/vulns.php?page=9 http://www.securityfocus.com/archive/1/455801/30/0/threaded http://www.kb.cert.org/vuls/id/815960 http://www.adobe.com/support/security/advisories/apsa07-01.html http://www.adobe.com/support/security/bulletins/apsb07-01.html Solution : Either disable displaying of PDF documents in web browsers or upgrade to Adobe Reader / Acrobat 8.0 / 7.0.9 or later. Network Security Threat Level: High / CVSS Base Score : 7.0 (AV:R/AC:L/Au:NR/C:P/I:P/A:P/B:N) Networks Security ID: 21858 Vulnerability Assessment Copyright: This script is Copyright (C) 2007 Tenable Network Security |
||
Cables, Connectors |
Atari Power Cube 800XL, 600XL, 65XE, 130XE USB-C Power Supply PSU
$11.25
$150.00
Atari 400/800/XL/XE Computer SIO2PC - PC/Mac Disk Drive Emulator Adapter/Device
$15.25
Atari FujiNet 800/XL/XE/XEGS (Devkit Version using 8 MB ESP32-DevKitC-VE board)
$58.00
$245.00
Fujinet 1.6 Atari 800 800XL 130XE 65XE XEGS
$60.23
SoftSide Magazine FlipBooks Issues 39, 40, 43, 44 Atari 8-Bit Editions 400/800
$34.98
A8picoCart Atari 130 / 65 XE 800 / 1200 XL XEGS multicart UnoCart clone game
$32.95
Atari 1050 US Doubler upgrade kit
$35.00
Vintage Atari SC1224 Color Monitor 12" Legit Untested, Please Read
$184.99
|
||
No Discussions have been posted on this vulnerability. |