VendorsAdobeacrobat_readerall versions
Vulnerabilities

Adobe Acrobat Reader

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1090CVEs
CVE-2025-27162
Acrobat Reader | Access of Uninitialized Pointer (CWE-824)
Published 2025-03-11 · Analyzed
7.8EPSS 0.003
CVE-2022-44512
Acrobat Reader | Out-of-bounds Write (CWE-787)
Published 2024-12-18 · Analyzed
7.8EPSS 0.003
CVE-2022-44513
Acrobat Reader | Out-of-bounds Write (CWE-787)
Published 2024-12-18 · Analyzed
7.8EPSS 0.003
CVE-2020-9695
Acrobat Reader | Out-of-bounds Write (CWE-787)
Published 2026-06-23 · Analyzed
7.8EPSS 0.003
CVE-2026-47911
Acrobat Reader | Out-of-bounds Write (CWE-787)
Published 2026-06-09 · Analyzed
7.8EPSS 0.003
CVE-2020-24428
Acrobat Reader DC for macOS Race Condition Vulnerability Could Lead to Privilege Escalation
Published 2020-11-05 · Modified
7.7EPSS 0.023
CVE-2000-0713
Buffer overflow in Adobe Acrobat 4.05, Reader, Business Tools, and Fill In products that handle PDF files allows attackers to execute arbitrary commands via a long /Registry or /Ordering specifier.
Published 2000-09-21 · Modified
7.6EPSS 0.049
CVE-2007-0046
Double free vulnerability in the Adobe Acrobat Reader Plugin before 8.0.0, as used in Mozilla Firefox 1.5.0.7, allows remote attackers to execute arbitrary code by causing an error via a javascript: URI call to document.write in the (1) FDF, (2) XML, or (3) XFDF AJAX request parameters.
Published 2007-01-03 · Modified
7.51 PoCEPSS 0.559
CVE-2006-3459
Multiple stack-based buffer overflows in the TIFF library (libtiff) before 3.8.2, as used in Adobe Reader 9.3.0 and other products, allow context-dependent attackers to execute arbitrary code or cause a denial of service via unspecified vectors, including a large tdir_count value in the TIFFFetchShortPair function in tif_dirread.c.
Published 2006-08-03 · Modified
7.56 PoCEPSS 0.537
CVE-2005-1306
The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."
Published 2005-06-15 · Modified
7.51 PoCEPSS 0.145
CVE-2005-2470
Buffer overflow in a "core application plug-in" for Adobe Reader 5.1 through 7.0.2 and Acrobat 5.0 through 7.0.2 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
Published 2005-08-16 · Modified
7.5EPSS 0.132
CVE-1999-1576
Buffer overflow in Adobe Acrobat ActiveX control (pdf.ocx, PDF.PdfCtrl.1) 1.3.188 for Acrobat Reader 4.0 allows remote attackers to execute arbitrary code via the pdf.setview method.
Published 2005-04-21 · Modified
7.51 PoCEPSS 0.129
CVE-2004-0194
Stack-based buffer overflow in the OutputDebugString function for Adobe Acrobat Reader 5.1 allows remote attackers to execute arbitrary code via a PDF document with XML Forms Data Format (XFDF) data.
Published 2004-09-01 · Modified
7.51 PoCEPSS 0.107
CVE-2015-3055
Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2015-3053, CVE-2015-3054, CVE-2015-3059, and CVE-2015-3075.
Published 2015-05-13 · Modified
7.5EPSS 0.098
CVE-2008-4815
Untrusted search path vulnerability in Adobe Reader and Acrobat 8.1.2 and earlier on Unix and Linux allows attackers to gain privileges via a Trojan Horse program in an unspecified directory that is associated with an insecure RPATH.
Published 2008-11-05 · Modified
7.5EPSS 0.078
CVE-2015-6713
The Function call implementation in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to bypass JavaScript API execution restrictions via unspecified vectors, a different vulnerability than CVE-2015-6707, CVE-2015-6708, CVE-2015-6709, CVE-2015-6710, CVE-2015-6711, CVE-2015-6712, CVE-2015-6714, CVE-2015-6715, CVE-2015-6716, CVE-2015-6717, CVE-2015-6718, CVE-2015-6719, CVE-2015-6720, CVE-2015-6721, CVE-2015-6722, CVE-2015-6723, CVE-2015-6724, CVE-2015-6725, CVE-2015-7614, CVE-2015-7616, CVE-2015-7618, CVE-2015-7619, CVE-2015-7620, and CVE-2015-7623.
Published 2015-10-14 · Modified
7.5EPSS 0.076
CVE-2004-0632
Adobe Reader 6.0 does not properly handle null characters when splitting a filename path into components, which allows remote attackers to execute arbitrary code via a file with a long extension that is not normally handled by Reader, triggering a buffer overflow.
Published 2004-07-16 · Modified
7.5EPSS 0.072
CVE-2004-0629
Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versions, allows remote attackers to execute arbitrary code via a URI for a PDF file with a null terminator (%00) followed by a long string.
Published 2004-08-18 · Modified
7.5EPSS 0.071
CVE-2003-0508
Buffer overflow in the WWWLaunchNetscape function of Adobe Acrobat Reader (acroread) 5.0.7 and earlier allows remote attackers to execute arbitrary code via a .pdf file with a long mailto link.
Published 2003-07-04 · Modified
7.51 PoCEPSS 0.070
CVE-2013-2549
Unspecified vulnerability in Adobe Reader 11.0.02 allows remote attackers to execute arbitrary code via vectors related to a "break into the sandbox," as demonstrated by George Hotz during a Pwn2Own competition at CanSecWest 2013.
Published 2013-03-11 · Modified
7.5EPSS 0.064
CVE-2017-16366
An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier versions, 2015.006.30355 and earlier versions, and 11.0.22 and earlier versions. This vulnerability is an instance of a security bypass vulnerability in the AcroPDF plugin.
Published 2017-12-09 · Modified
7.5EPSS 0.059
CVE-2015-4446
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and perform a transition from Low Integrity to Medium Integrity via unspecified vectors, a different vulnerability than CVE-2015-5090 and CVE-2015-5106.
Published 2015-07-15 · Modified
7.5EPSS 0.051
CVE-2013-2550
Unspecified vulnerability in Adobe Reader 11.0.02 allows attackers to bypass the sandbox protection mechanism via unknown vectors, as demonstrated by George Hotz during a Pwn2Own competition at CanSecWest 2013.
Published 2013-03-11 · Modified
7.5EPSS 0.044
CVE-2006-1627
Adobe Document Server for Reader Extensions 6.0 does not provide proper access control, which allows remote authenticated users to perform privileged actions by modifying the (1) actionID and (2) pageID parameters. NOTE: due to an error during reservation, this identifier was inadvertently associated with multiple issues. Other CVE identifiers have been assigned to handle other problems that are covered by the same disclosure.
Published 2006-04-13 · Modified
7.5EPSS 0.043
CVE-2012-4162
Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-4161.
Published 2012-08-15 · Modified
7.5EPSS 0.036
CVE-2012-4161
Adobe Reader and Acrobat 9.x before 9.5.2 and 10.x before 10.1.4 on Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-4162.
Published 2012-08-15 · Modified
7.5EPSS 0.036
CVE-2024-34129
Acrobat Android : OverSecured Finding : Overwriting arbitrary files via attacker-controlled output file paths
Published 2024-06-13 · Modified
7.5EPSS 0.003
CVE-2022-28247
Adobe Acrobat Uninstaller Hard Link Leads To Remote Code Execution
Published 2022-05-11 · Modified
7.3EPSS 0.005
CVE-2009-2564
NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus Download Manager before 1.5.0.48, and possibly other products, installs NOS\bin\getPlus_HelperSvc.exe with insecure permissions (Everyone:Full Control), which allows local users to gain SYSTEM privileges by replacing getPlus_HelperSvc.exe with a Trojan horse program, as demonstrated by use of getPlus Download Manager within Adobe Reader. NOTE: within Adobe Reader, the scope of this issue is limited because the program is deleted and the associated service is not automatically launched after a successful installation and reboot.
Published 2009-07-21 · Modified
7.22 PoCEPSS 0.056
CVE-2015-5090
Adobe Reader and Acrobat 10.x before 10.1.15 and 11.x before 11.0.12, Acrobat and Acrobat Reader DC Classic before 2015.006.30060, and Acrobat and Acrobat Reader DC Continuous before 2015.008.20082 on Windows and OS X allow attackers to bypass intended access restrictions and perform a transition from Low Integrity to Medium Integrity via unspecified vectors, a different vulnerability than CVE-2015-4446 and CVE-2015-5106.
Published 2015-07-15 · Modified
7.2EPSS 0.011
CVE-2001-1069
libCoolType library as used in Adobe Acrobat (acroread) on Linux creates the AdobeFnt.lst file with world-writable permissions, which allows local users to modify the file and possibly modify acroread's behavior.
Published 2004-09-01 · Modified
7.2EPSS 0.007
CVE-2013-0627
Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows local users to gain privileges via unknown vectors.
Published 2013-01-10 · Modified
7.2EPSS 0.007
CVE-2020-29075
PDF Injection BlackHat Talk
Published 2021-02-23 · Modified
7.1EPSS 0.079
CVE-2024-39420
Acrobat Reader | Time-of-check Time-of-use (TOCTOU) Race Condition (CWE-367)
Published 2024-08-14 · Modified
7.0EPSS 0.035
CVE-2024-39425
Security vulnerability in AdobeARMHelper
Published 2024-08-14 · Analyzed
7.0EPSS 0.002
CVE-2011-2100
Untrusted search path vulnerability in Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory.
Published 2011-06-16 · Modified
6.9EPSS 0.007
CVE-2011-0562
Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2011-0570 and CVE-2011-0588.
Published 2011-02-10 · Modified
6.9EPSS 0.007
CVE-2011-1353
Unspecified vulnerability in Adobe Reader 10.x before 10.1.1 on Windows allows local users to gain privileges via unknown vectors.
Published 2011-09-15 · Modified
6.9EPSS 0.007
CVE-2011-0570
Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2011-0562 and CVE-2011-0588.
Published 2011-02-10 · Modified
6.9EPSS 0.006
CVE-2011-0588
Untrusted search path vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2011-0562 and CVE-2011-0570.
Published 2011-02-10 · Modified
6.9EPSS 0.006
← Prev19 / 28Next →