← All CVEs

CVE-2018-15979

high · 7.5

Adobe Acrobat and Reader versions 2019.008.20080 and earlier, 2017.011.30105 and earlier, and 2015.006.30456 and earlier have a ntlm sso hash theft vulnerability. Successful exploitation could lead to information disclosure.

7.5
CVSS
10.3%
EPSS (exploit prob.)
95th
EPSS percentile
2018-11-29
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses

CWE-200

Affected products

VendorProductAffected versions
adobeacrobat_dc>= 15.006.30060, <= 15.006.30456
adobeacrobat_dc>= 15.008.20082, <= 19.008.20080
adobeacrobat_dc>= 17.011.30059, <= 17.011.30105
adobeacrobat_reader_dc>= 15.006.30060, <= 15.006.30456
adobeacrobat_reader_dc>= 15.008.20082, <= 19.008.20080
adobeacrobat_reader_dc>= 17.011.30059, <= 17.011.30105
microsoftwindowsall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-15979