CVE-2020-3803

HIGH

Adobe Acrobat and Reader <2020.006.20034 - Privilege Escalation

Title source: llm

Description

Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and 2015.006.30510 and earlier have an insecure library loading (dll hijacking) vulnerability. Successful exploitation could lead to privilege escalation.

Scores

CVSS v3 7.8
EPSS 0.0014
EPSS Percentile 33.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (4)

adobe/acrobat_dc < 15.006.30518
adobe/acrobat_dc < 20.006.20042
adobe/acrobat_reader_dc < 15.006.30518
adobe/acrobat_reader_dc < 20.006.20042

Timeline

Published Mar 25, 2020
Tracked Since Feb 18, 2026