33897vdb entry
http://osvdb.org/33897 CVE-2007-1199
Adobe Acrobat/Adobe Reader 7.0.9 - Information Disclosure
Record summary
CVE-2007-1199 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
Adobe Reader and Acrobat Trial allow remote attackers to read arbitrary files via a file:// URI in a PDF document, as demonstrated with <</URI(file:///C:/)/S/URI>>, a different issue than CVE-2007-0045.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAdobe Acrobat/Adobe Reader 7.0.9 - Information DisclosureExploitDB exploitby pdpNot analyzed1 file
References
824408Third-party advisory
http://secunia.com/advisories/24408 29205Third-party advisory
http://secunia.com/advisories/29205 GLSA-200803-01Vendor advisory
http://security.gentoo.org/glsa/glsa-200803-01.xml gnucitizen.org
http://www.gnucitizen.org/projects/pdf-strikes-back 22753vdb entry
http://www.securityfocus.com/bid/22753 adobe-pdf-file-information-disclosure(32815)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/32815 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-1199