← All CVEs

CVE-2003-0434

high · 7.5

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

7.5
CVSS
40.9%
EPSS (exploit prob.)
99th
EPSS percentile
2003-07-24
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
adobeacrobat5.0.6
xpdfxpdf1.1
mandrakesoftmandrake_linux9.0
mandrakesoftmandrake_linux9.1
mandrakesoftmandrake_linux_corporate_server2.1
redhatenterprise_linux2.1
redhatenterprise_linux2.1
redhatenterprise_linux2.1
redhatlinux7.1
redhatlinux7.2
redhatlinux7.3
redhatlinux8.0
redhatlinux9.0
redhatlinux_advanced_workstation2.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2003-0434