Vulnerability index

Browse CVEs

6,387 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Adobe Air HIGH 7.1
CVE-2009-3951

Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player before 10.0.42.34 and Adobe AIR before 1.5.3 on Windows allows re…

Fix: after 10.0.32.18
Fix from $1,950 2009-12-10
Illustrator HIGH 9.3
CVE-2009-4195EPSS 71%

Buffer overflow in Adobe Illustrator CS4 14.0.0, CS3 13.0.3 and earlier, and CS3 13.0.0 allows remote attackers to execute arbitrary code via a long …

No fix yet
Fix from $1,950 2009-12-04
Acrobat HIGH 9.3
CVE-2009-2980EPSS 8%

Integer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows attackers to cause a denial of service or …

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2981EPSS 6%

Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly validate input, which might allow attackers to bypass…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2982

An unspecified certificate in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow remote attackers …

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2983EPSS 12%

Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 allow attackers to cause a denial of service (memory corrup…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2984EPSS 7%

Unspecified vulnerability in the image decoder in Adobe Acrobat 9.x before 9.2, and possibly 7.x through 7.1.4 and 8.x through 8.1.7, allows attacker…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2985EPSS 6%

Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allow attackers to cause a denial of service (memory corruption) or p…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2986EPSS 8%

Multiple heap-based buffer overflows in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to exec…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2989EPSS 9%

Integer overflow in Adobe Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to execute arbitrary code vi…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2990EPSS 69%

Array index error in Adobe Reader and Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 might allow attackers to execute arbit…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2991EPSS 8%

Unspecified vulnerability in the Mozilla plug-in in Adobe Reader and Acrobat 8.x before 8.1.7, and possibly 7.x before 7.1.4 and 9.x before 9.2, migh…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2993EPSS 7%

The JavaScript for Acrobat API in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 does not properly implement the (1)…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2994EPSS 19%

Buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitrary code vi…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2996EPSS 6%

Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allow attackers to cause a denial of service (memory corruption) or p…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2997EPSS 8%

Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 might allow attackers to execute arbitr…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-2998EPSS 10%

Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly validate input, which might allow attackers to execut…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-3458EPSS 10%

Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 do not properly validate input, which might allow attackers to execut…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-3460EPSS 6%

Adobe Acrobat 9.x before 9.2, 8.x before 8.1.7, and possibly 7.x through 7.1.4 allows attackers to cause a denial of service (memory corruption) or p…

Fix: after 9.1.3
Fix from $1,950 2009-10-19
Acrobat HIGH 9.3
CVE-2009-3461

Unspecified vulnerability in Adobe Acrobat 9.x before 9.2 allows attackers to bypass intended file-extension restrictions via unknown vectors.

Patch available
Fix from $1,950 2009-10-19
Acrobat MEDIUM 5.1
CVE-2009-3462EPSS 6%

Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 on Unix, when Debug mode is enabled, allow attackers to execute arbit…

Fix: after 9.1.3
Fix from $1,600 2009-10-19
Acrobat HIGH 8.8
CVE-2009-3459 KEVEPSS 87%

Heap-based buffer overflow in Adobe Reader and Acrobat 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2 allows remote attackers to execute arbi…

Fix: 7.1.4 / 8.1.7+
Fix from $1,950 2009-10-13
Photoshop Elements HIGH 7.8
CVE-2009-3489

Adobe Photoshop Elements 8.0 installs the Adobe Active File Monitor V8 service with an insecure security descriptor, which allows local users to (1) …

No fix yet
Fix from $1,950 2009-09-30
Acrobat MEDIUM 5.0
CVE-2009-3431EPSS 22%

Stack consumption vulnerability in Adobe Reader and Acrobat 9.1.3, 9.1.2, 9.1.1, and earlier 9.x versions; 8.1.6 and earlier 8.x versions; and possib…

No fix yet
Fix from $1,600 2009-09-25
Robohelp Server HIGH 9.3
CVE-2009-3068EPSS 78%

Unrestricted file upload vulnerability in the RoboHelpServer Servlet (robohelp/server) in Adobe RoboHelp Server 8 allows remote attackers to execute …

No fix yet
Fix from $1,950 2009-09-04
Coldfusion MEDIUM 5.8
CVE-2009-1878

Session fixation vulnerability in Adobe ColdFusion 8.0.1 and earlier allows remote attackers to hijack web sessions via unspecified vectors.

Fix: after 8.0.1
Fix from $1,600 2009-08-18
Coldfusion MEDIUM 5.0
CVE-2009-1876

Adobe ColdFusion 8.0.1 and earlier might allow attackers to obtain sensitive information via unspecified vectors, related to a "double-encoded null c…

Fix: after 8.0.1
Fix from $1,600 2009-08-18
Air HIGH 9.3
CVE-2009-1863EPSS 6%

Unspecified vulnerability in Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a …

Fix: after 10.0.22.87
Fix from $1,950 2009-07-31
Air HIGH 9.3
CVE-2009-1864EPSS 7%

Heap-based buffer overflow in Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a…

Fix: after 10.0.22.87
Fix from $1,950 2009-07-31
Air HIGH 9.3
CVE-2009-1865EPSS 6%

Adobe Flash Player before 9.0.246.0 and 10.x before 10.0.32.18, and Adobe AIR before 1.5.2, allows attackers to cause a denial of service (applicatio…

Fix: after 10.0.22.87
Fix from $1,950 2009-07-31