NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
21908  CVE-2016-7856  Adobe DNG Converter versions 9.7 and earlier have an exploitable memory corruption vulnerability. Successful exploitation could lead to arbitrary code execution.    10  High  2017-01-19  2016-12-16  View
19869  CVE-2016-4167  Adobe DNG Software Development Kit (SDK) before 1.4 2016 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.    7.5  High  2017-01-19  2016-06-17  View
60490  CVE-2006-1785  Adobe Document Server for Reader Extensions 6.0 allows remote authenticated users to inject arbitrary web script via a leading (1) ftp or (2) http URI in the ReaderURL variable in the "Update Download Site" section of ads-readerext. NOTE: it is not clear whether the vendor advisory addresses this issue. In addition, since the issue requires administrative privileges to exploit, it is not clear whether this crosses security boundaries.    2.1  Low  2016-12-20  2011-03-07  View
60334  CVE-2006-1627  Adobe Document Server for Reader Extensions 6.0 does not provide proper access control, which allows remote authenticated users to perform privileged actions by modifying the (1) actionID and (2) pageID parameters. NOTE: due to an error during reservation, this identifier was inadvertently associated with multiple issues. Other CVE identifiers have been assigned to handle other problems that are covered by the same disclosure.    7.5  High  2016-12-20  2011-03-07  View
60492  CVE-2006-1787  Adobe Document Server for Reader Extensions 6.0 includes a user"s session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session.    2.6  Low  2016-12-20  2011-03-07  View

Page 668 of 17672, showing 5 records out of 88360 total, starting on record 3336, ending on 3340

Actions