Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qfq6-38xq-622r

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.

EPSS

Процентиль: 73%
0.00788
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 5.5
nvd
около 5 лет назад

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.

CVSS3: 6.5
fstec
около 5 лет назад

Уязвимость программного обеспечения Adobe Reader Mobile, связанная с недостатками контроля доступа, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 73%
0.00788
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-284