5
CVSSv2

CVE-2005-1306

Published: 15/06/2005 Updated: 08/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote malicious users to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

adobe acrobat reader 7.0.1

adobe acrobat reader 7.0

adobe acrobat 7.0.1

adobe acrobat 7.0

Exploits

source: wwwsecurityfocuscom/bid/13962/info Adobe Acrobat and Adobe Reader may allow remote attackers to determine the existence of files on a vulnerable computer This issue can be used to disclose data from a target file as well Information gathered through the exploitation of this vulnerability may aid in other attacks <?xml ver ...