CVE-2020-29075
PDF Injection BlackHat Talk
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Acrobat Reader DC versions 2020.013.20066 (and earlier), 2020.001.30010 (and earlier) and 2017.011.30180 (and earlier) are affected by an information exposure vulnerability, that could enable an attacker to get a DNS interaction and track if the user has opened or closed a PDF file when loaded from the filesystem without a prompt. User interaction is required to exploit this vulnerability.
Acrobat Reader DC versiones 2020.013.20066 (y anteriores), versiones 2020.001.30010 (y anteriores) y versiones 2017.011.30180 (y anteriores) está afectado por una vulnerabilidad de exposición de información, que podría permitir a un atacante obtener una interacción de DNS y rastrear si el usuario ha abierto o cerrado un archivo PDF cuando es cargado desde el sistema de archivos sin un mensaje. Una interacción del usuario es requerida para explotar esta vulnerabilidad
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-11-26 CVE Reserved
- 2021-02-23 CVE Published
- 2024-04-12 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-20: Improper Input Validation
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://helpx.adobe.com/security/products/acrobat/apsb20-75.html | 2021-09-22 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Adobe Search vendor "Adobe" | Acrobat Search vendor "Adobe" for product "Acrobat" | >= 17.011.30059 <= 17.011.30180 Search vendor "Adobe" for product "Acrobat" and version " >= 17.011.30059 <= 17.011.30180" | classic |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Search vendor "Adobe" for product "Acrobat" | >= 17.011.30059 <= 17.011.30180 Search vendor "Adobe" for product "Acrobat" and version " >= 17.011.30059 <= 17.011.30180" | classic |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Search vendor "Adobe" for product "Acrobat" | >= 20.001.30005 <= 20.001.30010 Search vendor "Adobe" for product "Acrobat" and version " >= 20.001.30005 <= 20.001.30010" | classic |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Search vendor "Adobe" for product "Acrobat" | >= 20.001.30005 <= 20.001.30010 Search vendor "Adobe" for product "Acrobat" and version " >= 20.001.30005 <= 20.001.30010" | classic |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Dc Search vendor "Adobe" for product "Acrobat Dc" | >= 15.008.20082 <= 20.013.20066 Search vendor "Adobe" for product "Acrobat Dc" and version " >= 15.008.20082 <= 20.013.20066" | continuous |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Dc Search vendor "Adobe" for product "Acrobat Dc" | >= 15.008.20082 <= 20.013.20066 Search vendor "Adobe" for product "Acrobat Dc" and version " >= 15.008.20082 <= 20.013.20066" | continuous |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Reader Search vendor "Adobe" for product "Acrobat Reader" | >= 17.011.30059 <= 17.011.30180 Search vendor "Adobe" for product "Acrobat Reader" and version " >= 17.011.30059 <= 17.011.30180" | classic |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Reader Search vendor "Adobe" for product "Acrobat Reader" | >= 17.011.30059 <= 17.011.30180 Search vendor "Adobe" for product "Acrobat Reader" and version " >= 17.011.30059 <= 17.011.30180" | classic |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Reader Search vendor "Adobe" for product "Acrobat Reader" | >= 20.001.30005 <= 20.001.30010 Search vendor "Adobe" for product "Acrobat Reader" and version " >= 20.001.30005 <= 20.001.30010" | classic |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Reader Search vendor "Adobe" for product "Acrobat Reader" | >= 20.001.30005 <= 20.001.30010 Search vendor "Adobe" for product "Acrobat Reader" and version " >= 20.001.30005 <= 20.001.30010" | classic |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Reader Dc Search vendor "Adobe" for product "Acrobat Reader Dc" | >= 15.008.20082 <= 20.013.20066 Search vendor "Adobe" for product "Acrobat Reader Dc" and version " >= 15.008.20082 <= 20.013.20066" | continuous |
Affected
| in | Apple Search vendor "Apple" | Macos Search vendor "Apple" for product "Macos" | - | - |
Safe
|
Adobe Search vendor "Adobe" | Acrobat Reader Dc Search vendor "Adobe" for product "Acrobat Reader Dc" | >= 15.008.20082 <= 20.013.20066 Search vendor "Adobe" for product "Acrobat Reader Dc" and version " >= 15.008.20082 <= 20.013.20066" | continuous |
Affected
| in | Microsoft Search vendor "Microsoft" | Windows Search vendor "Microsoft" for product "Windows" | - | - |
Safe
|