9.3
CVSSv2

CVE-2014-0514

Published: 15/04/2014 Updated: 09/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 940
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Adobe Reader Mobile application prior to 11.2 for Android does not properly restrict use of JavaScript, which allows remote malicious users to execute arbitrary code via a crafted PDF document, a related issue to CVE-2012-6636.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe adobe reader

adobe adobe reader 11.1.0

Exploits

## # This module requires Metasploit: http//metasploitcom/download # Current source: githubcom/rapid7/metasploit-framework ## require 'msf/core' require 'msf/core/exploit/fileformat' require 'msf/core/exploit/pdf' require 'msf/core/exploit/android' class Metasploit3 < Msf::Exploit::Remote Rank = GoodRanking include Msf::Exploit: ...
------------------------------------------------------------------------ Adobe Reader for Android exposes insecure Javascript interfaces ------------------------------------------------------------------------ Yorick Koster, April 2014 ------------------------------------------------------------------------ Abstract ------------------------------- ...