CVE-2005-1306

The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."
References
Link Resource
http://www.adobe.com/support/techdocs/331710.html Broken Link Patch Vendor Advisory
http://www.securityfocus.com/bid/13962 Broken Link Exploit Patch Third Party Advisory VDB Entry Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adobe:acrobat:7.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:7.0:*:*:*:*:*:*:*
cpe:2.3:a:adobe:acrobat_reader:7.0.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-06-15 04:00

Updated : 2024-02-08 19:55


NVD link : CVE-2005-1306

Mitre link : CVE-2005-1306

CVE.ORG link : CVE-2005-1306


JSON object : View

Products Affected

adobe

  • acrobat_reader
  • acrobat
CWE
CWE-611

Improper Restriction of XML External Entity Reference