7.5
CVSSv2

CVE-2003-0434

Published: 24/07/2003 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote malicious users to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe acrobat 5.0.6

xpdf xpdf 1.1

redhat enterprise linux 2.1

redhat linux 7.1

mandrakesoft mandrake linux 9.1

mandrakesoft mandrake linux corporate server 2.1

redhat linux 8.0

redhat linux 9.0

redhat linux advanced workstation 2.1

mandrakesoft mandrake linux 9.0

redhat linux 7.2

redhat linux 7.3

Exploits

source: wwwsecurityfocuscom/bid/7912/info A vulnerability has been reported for multiple PDF viewers for Unix variant operating systems The problem is said to occur when hyperlinks have been enabled within the viewer Allegedly, by placing a specially formatted hyperlink within a PDF file it is possible to execute arbitrary shell command ...