Sign in
CVE-2009-4764
CVE-2009-4764
Description
Adobe Reader 8.x and 9.x on Windows is able to execute EXE files that are embedded in a PDF document, which makes it easier for remote attackers to trick users into executing arbitrary code via a crafted document.
Impact
CVSS v2 : 9.3 HIGH
Type
CWE-94
Attack Vector
CVSSv2 Vector : AV:N/AC:M/Au:N/C:C/I:C/A:C
Quick links
CVE
,
NVD
,
CERT
,
Metasploit
,
Exploit-db
,
Fulldisc
,
Bugtraq
,
Microsoft
,
Red Hat
,
Debian
, GitHub
code
/
issues
,
Google
References
http://lists.immunitysec.com/pipermail/dailydave/2010-April/006072.html
http://lists.immunitysec.com/pipermail/dailydave/2010-April/006074.html
http://www.metasploit.com/redmine/projects/framework/repository/revisions/8379/changes/modules/exploits/windows/fileformat/adobe_pdf_embedded_exe.rb
https://exchange.xforce.ibmcloud.com/vulnerabilities/57994
https://forum.immunityinc.com/board/thread/1199/exploiting-pdf-files-without-vulnerabili/?page=1#post-1199
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6976
FAQ
Terms of service
Privacy policy