CVE-2005-1306: XEE
The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1306?
CVE-2005-1306 is classified as a medium severity vulnerability due to the potential information exposure.
How do I fix CVE-2005-1306?
To fix CVE-2005-1306, users should upgrade to Adobe Reader and Acrobat versions beyond 7.0.1 or apply any relevant patches provided by Adobe.
What impact does CVE-2005-1306 have on Adobe Reader?
CVE-2005-1306 allows remote attackers to execute specific JavaScripts to check for the existence of files, leading to potential information exposure.
Which versions of Adobe are affected by CVE-2005-1306?
CVE-2005-1306 affects Adobe Reader and Acrobat versions 7.0 and 7.0.1.
Is Adobe Reader 7.0 still safe to use after CVE-2005-1306?
Adobe Reader 7.0 is not safe to use after CVE-2005-1306; upgrading to a later version is strongly recommended to mitigate risks.