7.8
CVSSv2

CVE-2019-7089

Published: 24/05/2019 Updated: 24/08/2020
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

Adobe Acrobat and Reader versions 2019.010.20069 and previous versions, 2019.010.20069 and previous versions, 2017.011.30113 and previous versions version, and 2015.006.30464 and previous versions have a data leakage (sensitive) vulnerability. Successful exploitation could lead to information disclosure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

adobe acrobat_dc

adobe acrobat_reader_dc

Github Repositories

Lantern Shark is a static file analyzer written in HTML and Javascript.

Lantern Shark Lantern Shark is a file analyzer written in HTML and JavaScript It can extract metadata and embedded script code from multiple file types It also attempts to identify suspicious and malicious attributes of various file types A live demo of this project can be viewed here Additional Features Deobfuscation of extracted scripts via inserted comments Look for th

Recent Articles

WTF PDF: If at first you don't succeed, you may be Adobe re-patching its Acrobat, Reader patches
The Register • Shaun Nichols in San Francisco • 21 Feb 2019

Plus: How Microsoft Edge helps Facebook Flash files dodge click-to-play rules in Edge

Adobe is taking a second crack at patching security bugs in its Acrobat and Reader PDF apps. The APSB19-13 release, out today, attempts to completely kill off vulnerability CVE-2019-7089, which a software update earlier this month tried to address but was found to have insufficiently covered the security hole. In other words, Adobe's earlier update didn't fully fix the issue, and so now people have to update and patch their Acrobat and Reader installations again. According to Symantec's Security...