Adobe Reader (Adobe Acrobat Reader) 7.0 through 7.0.8 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long argument string to the (1) src, (2) setPageMode, (3) setLayoutMode, and (4) setNamedDest methods in an AcroPDF ActiveX control, a different set of vectors than CVE-2006-6027.
2006-12-03T19:28:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | adobe | acrobat_reader | 7.0 | Yes |
| Application | adobe | acrobat_reader | 7.0.1 | Yes |
| Application | adobe | acrobat_reader | 7.0.2 | Yes |
| Application | adobe | acrobat_reader | 7.0.3 | Yes |
| Application | adobe | acrobat_reader | 7.0.4 | Yes |
| Application | adobe | acrobat_reader | 7.0.5 | Yes |
| Application | adobe | acrobat_reader | 7.0.6 | Yes |
| Application | adobe | acrobat_reader | 7.0.7 | Yes |
| Application | adobe | acrobat_reader | 7.0.8 | Yes |