CVE-2007-5659 describes multiple buffer overflow vulnerabilities in Adobe Reader and Acrobat versions 8.1.1 and earlier, allowing remote attackers to execute arbitrary code through specially crafted PDF files containing long arguments to unspecified JavaScript methods. This vulnerability carries a high CVSS score of 7.8, indicating a significant risk of complete compromise of confidentiality, integrity, and availability if a user opens a malicious PDF. It is actively exploited in the wild, with readily available Metasploit modules and significant community discussion, highlighting its widespread recognition and potential for abuse.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 8.1.2CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:* | ||
< 8.1.2CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.