Vulnerability Details CVE-2007-0046
Double free vulnerability in the Adobe Acrobat Reader Plugin before 8.0.0, as used in Mozilla Firefox 1.5.0.7, allows remote attackers to execute arbitrary code by causing an error via a javascript: URI call to document.write in the (1) FDF, (2) XML, or (3) XFDF AJAX request parameters.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.649
EPSS Ranking 98.4%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2007-0046
-
cpe:2.3:a:adobe:acrobat_reader:-
-
cpe:2.3:a:adobe:acrobat_reader:3.0
-
cpe:2.3:a:adobe:acrobat_reader:3.01
-
cpe:2.3:a:adobe:acrobat_reader:3.02
-
cpe:2.3:a:adobe:acrobat_reader:4.0
-
cpe:2.3:a:adobe:acrobat_reader:4.0.5
-
cpe:2.3:a:adobe:acrobat_reader:4.0.5a
-
cpe:2.3:a:adobe:acrobat_reader:4.0.5c
-
cpe:2.3:a:adobe:acrobat_reader:4.5
-
cpe:2.3:a:adobe:acrobat_reader:5.0
-
cpe:2.3:a:adobe:acrobat_reader:5.0.10
-
cpe:2.3:a:adobe:acrobat_reader:5.0.11
-
cpe:2.3:a:adobe:acrobat_reader:5.0.5
-
cpe:2.3:a:adobe:acrobat_reader:5.0.6
-
cpe:2.3:a:adobe:acrobat_reader:5.0.7
-
cpe:2.3:a:adobe:acrobat_reader:5.0.9
-
cpe:2.3:a:adobe:acrobat_reader:5.1
-
cpe:2.3:a:adobe:acrobat_reader:6.0
-
cpe:2.3:a:adobe:acrobat_reader:6.0.1
-
cpe:2.3:a:adobe:acrobat_reader:6.0.2
-
cpe:2.3:a:adobe:acrobat_reader:6.0.3
-
cpe:2.3:a:adobe:acrobat_reader:6.0.4
-
cpe:2.3:a:adobe:acrobat_reader:6.0.5
-
cpe:2.3:a:adobe:acrobat_reader:7.0
-
cpe:2.3:a:adobe:acrobat_reader:7.0.1
-
cpe:2.3:a:adobe:acrobat_reader:7.0.2
-
cpe:2.3:a:adobe:acrobat_reader:7.0.3
-
cpe:2.3:a:adobe:acrobat_reader:7.0.4
-
cpe:2.3:a:adobe:acrobat_reader:7.0.5
-
cpe:2.3:a:adobe:acrobat_reader:7.0.6
-
cpe:2.3:a:adobe:acrobat_reader:7.0.7
-
cpe:2.3:a:adobe:acrobat_reader:7.0.8