CVE-2018-15979
high · 7.5Adobe Acrobat and Reader versions 2019.008.20080 and earlier, 2017.011.30105 and earlier, and 2015.006.30456 and earlier have a ntlm sso hash theft vulnerability. Successful exploitation could lead to information disclosure.
7.5
CVSS
10.3%
EPSS (exploit prob.)
95th
EPSS percentile
2018-11-29
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weaknesses
CWE-200
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| adobe | acrobat_dc | >= 15.006.30060, <= 15.006.30456 |
| adobe | acrobat_dc | >= 15.008.20082, <= 19.008.20080 |
| adobe | acrobat_dc | >= 17.011.30059, <= 17.011.30105 |
| adobe | acrobat_reader_dc | >= 15.006.30060, <= 15.006.30456 |
| adobe | acrobat_reader_dc | >= 15.008.20082, <= 19.008.20080 |
| adobe | acrobat_reader_dc | >= 17.011.30059, <= 17.011.30105 |
| microsoft | windows | all versions |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-15979