CVE-2018-4917
critical · 9.8Adobe Acrobat and Reader versions 2018.009.20050 and earlier, 2017.011.30070 and earlier, 2015.006.30394 and earlier have an exploitable heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
9.8
CVSS
17.6%
EPSS (exploit prob.)
97th
EPSS percentile
2018-05-19
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-787
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| adobe | acrobat_2017 | >= 17.011.30070, < 17.011.30078 |
| adobe | acrobat_dc | >= 15.006.30394, < 15.006.30413 |
| adobe | acrobat_dc | >= 18.009.20050, < 18.011.20035 |
| adobe | acrobat_reader_2017 | >= 17.011.30070, < 17.011.30078 |
| adobe | acrobat_reader_dc | >= 15.006.30394, < 15.006.30413 |
| adobe | acrobat_reader_dc | >= 18.009.20050, < 18.011.20035 |
| apple | macos | all versions |
| microsoft | windows | all versions |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-4917