Oval Definition:oval:org.mitre.oval:def:6487
Revision Date:2013-08-12Version:17
Title:Adobe Reader and Acrobat Multiple Vulnerabilities
Description:Multiple cross-site scripting (XSS) vulnerabilities in Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2, for Mozilla Firefox, Microsoft Internet Explorer 6 SP1, Google Chrome, Opera 8.5.4 build 770, and Opera 9.10.8679 on Windows allow remote attackers to inject arbitrary JavaScript and conduct other attacks via a .pdf URL with a javascript: or res: URI with (1) FDF, (2) XML, and (3) XFDF AJAX parameters, or (4) an arbitrarily named name=URI anchor identifier, aka "Universal XSS (UXSS)."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2007-0045
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Adobe Acrobat
Adobe Reader
Definition Synopsis
  • Adobe Reader 7
  • Adobe Reader 7 Series is installed
  • AND Adobe Reader 7, the sub-version is vulnerable
  • Adobe Reader is less than 7.1.4
  • OR Adobe Reader library is less than 7.1.4.2009100300
  • OR Adobe Reader 8
  • Adobe Reader 8 Series is installed
  • AND Adobe Reader 8, the sub-version is vulnerable
  • Adobe Reader is less than 8.1.7
  • OR Adobe Reader library is less than 8.1.7.59
  • OR Adobe Reader 9
  • Adobe Reader 9 Series is installed
  • AND Adobe Reader 9, the sub-version is vulnerable
  • Adobe Reader is less than 9.2.0
  • OR Adobe Reader library is less than 9.1.0.2009022700
  • OR Adobe Acrobat 7
  • Adobe Acrobat 7 Series is installed
  • AND Adobe Acrobat 7, the sub-version is vulnerable
  • Adobe Acrobat is less than 7.1.4
  • OR Adobe Acrobat library is less than 7.1.4.2009100300
  • OR Adobe Acrobat 8
  • Adobe Acrobat 8 Series is installed
  • AND Adobe Acrobat 8, the sub-version is vulnerable
  • Adobe Acrobat is less than 8.1.7
  • OR Adobe Acrobat library is less than 8.1.7.59
  • OR Adobe Acrobat 9
  • Adobe Acrobat 9 Series is installed
  • AND Adobe Acrobat 8, the sub-version is vulnerable
  • Adobe Acrobat is less than 9.2.0
  • OR Adobe Acrobat library is less than 9.1.0.2009022700
  • BACK