CVE-2006-1787: Low severity Adobe Document Server vulnerability
Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1787?
CVE-2006-1787 is considered a critical vulnerability due to the potential exposure of sensitive PDF files.
How do I fix CVE-2006-1787?
To fix CVE-2006-1787, update Adobe Document Server for Reader Extensions to the latest version that addresses this vulnerability.
Who is affected by CVE-2006-1787?
CVE-2006-1787 affects users of Adobe Document Server for Reader Extensions version 6.0.
What type of vulnerability is CVE-2006-1787?
CVE-2006-1787 is a session management vulnerability that exposes session IDs through the HTTP Referer header.
What might happen if CVE-2006-1787 is exploited?
If exploited, CVE-2006-1787 could allow remote attackers to access and potentially download PDF files associated with a user's session.