CVE-2015-5092 is an access restriction bypass vulnerability affecting Adobe Reader and Acrobat on Windows and OS X, including specific versions of 10.x, 11.x, and DC Classic/Continuous. This flaw allows an unauthenticated attacker to obtain sensitive information over a network with low attack complexity. While the CVSS score is 5.0 (Medium), indicating a potential for partial confidentiality impact, there is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and it is not listed in CISA's KEV catalog. Community discussion is minimal, with only one mention related to PDF-based polyglots through SVG images.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 10.0, < 10.1.15CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:* | ||
>= 11.0.0, < 11.0.12CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat:*:*:*:*:*:*:*:* | ||
>= 15.006.30033, < 15.006.30060CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:classic:*:*:* | ||
>= 15.007.20033, < 15.008.20082CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat_dc:*:*:*:*:continuous:*:*:* | ||
>= 10.0, < 10.1.15CPE matchmatch criteria | cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.