V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2007-1377
CVE
MediumConfirmedExploit available

AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of servi…

CVSS
5.0
Medium
EPSS
0.17
p95
Published
2007-01-01
Updated
2007-01-01
Description

AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspecified resource consumption) via a .pdf URL with an anchor identifier that begins with search= followed by many %n sequences, a different vulnerability than CVE-2006-6027 and CVE-2006-6236.

Tags · CWE
CWE-400
CAPEC-147
CAPEC-227
CAPEC-492
Affected products
Acrobat_readerFirefoxNavigatorOpera_browser
CVSS vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Timeline
2007-01-01
Published
2007-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Authentication
Au: N
None (N)
Confidentiality Impact
C: N
None (N)
Integrity Impact
I: N
None (N)
Availability Impact
A: P
Partial
Exploit indicators
EPSS
0.172 · p95
Known exploited (KEV)
No
MITRE ATT&CK
Inferred via CAPEC
└ via CAPEC-227 · CWE-400
Known exploits — Сканер-ВС
3430
exploitdb · https://www.exploit-db.com/exploits/3430
Enterprise
Affected software
ProductVendorStatus
acroreadTracked
acrobat_reader*Tracked
firefox*Tracked
navigator*Tracked
opera_browser*Tracked
Source databases
CVE
UBU