4.3
CVSSv2

CVE-2014-0521

Published: 14/05/2014 Updated: 14/05/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

Adobe Reader and Acrobat 10.x prior to 10.1.10 and 11.x prior to 11.0.07 on Windows and OS X do not properly implement JavaScript APIs, which allows remote malicious users to obtain sensitive information via a crafted PDF document.

Vulnerable Product Search on Vulmon Subscribe to Product

adobe acrobat_reader 11.0

adobe acrobat_reader 10.0

adobe acrobat_reader 10.0.2

adobe acrobat_reader 10.1.3

adobe acrobat_reader 10.1.5

adobe acrobat_reader 10.0.3

adobe acrobat_reader 10.1

adobe acrobat_reader 10.1.1

adobe acrobat_reader 10.1.2

adobe acrobat_reader 11.0.2

adobe acrobat_reader 11.0.3

adobe acrobat_reader 11.0.4

adobe acrobat_reader 11.0.5

adobe acrobat_reader 10.1.7

adobe acrobat_reader 10.1.8

adobe acrobat_reader 10.1.9

adobe acrobat_reader 11.0.1

adobe acrobat_reader 11.0.6

adobe acrobat_reader 10.0.1

adobe acrobat_reader 10.1.4

adobe acrobat_reader 10.1.6

adobe acrobat 10.1.2

adobe acrobat 10.1.4

adobe acrobat 10.1.9

adobe acrobat 11.0.1

adobe acrobat 10.0.1

adobe acrobat 10.0.2

adobe acrobat 10.0.3

adobe acrobat 10.1

adobe acrobat 11.0.3

adobe acrobat 11.0.4

adobe acrobat 11.0.6

adobe acrobat 11.0.5

adobe acrobat 10.1.5

adobe acrobat 10.1.6

adobe acrobat 10.1.7

adobe acrobat 10.1.8

adobe acrobat 10.0

adobe acrobat 10.1.1

adobe acrobat 10.1.3

adobe acrobat 11.0

adobe acrobat 11.0.2

Github Repositories

CVE-2014-0521 Adobe Reader vulnerability This JavaScript based Adobe Reader vulnerability affects all versions of Adobe Reader on all platforms prior to version 11007 (released on May 13, 2014) The bug was found by Gábor Molnár and was reported on March 10, 2014 Advisories: CVE-2014-0521 Adobe Security Bulletin APSB14-15 Presentations: Camp++ 2014 (English)