adobe.comConfirmation
http://www.adobe.com/support/techdocs/331710.html CVE-2005-1306
HIGH
Adobe Acrobat 7.0 / Adobe Reader 7.0 - File Existence / File Disclosure
Record summary
CVE-2005-1306 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit.
Description
The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAdobe Acrobat 7.0 / Adobe Reader 7.0 - File Existence / File DisclosureExploitDB exploitby Sverre H. HusebyNot analyzed1 file
References
313962vdb entry
http://www.securityfocus.com/bid/13962 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2005-1306