CVE-2007-0048: Medium severity Adobe Acrobat vulnerability
Adobe Acrobat Reader Plugin before 8.0.0, and possibly the plugin distributed with Adobe Reader 7.x before 7.1.4, 8.x before 8.1.7, and 9.x before 9.2, when used with Internet Explorer, Google Chrome, or Opera, allows remote attackers to cause a denial of service (memory consumption) via a long sequence of # (hash) characters appended to a PDF URL, related to a "cross-site scripting issue."
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0048?
CVE-2007-0048 is classified as a denial of service vulnerability affecting Adobe Acrobat Reader.
How do I fix CVE-2007-0048?
To mitigate CVE-2007-0048, users should upgrade to Adobe Acrobat Reader version 8.1.7 or later.
What versions of Adobe software are affected by CVE-2007-0048?
CVE-2007-0048 affects Adobe Acrobat Reader versions 7.x prior to 7.1.4 and 8.x prior to 8.1.7.
Can CVE-2007-0048 be exploited remotely?
Yes, CVE-2007-0048 can be exploited remotely through the usage of malicious PDF files.
What impact does CVE-2007-0048 have on users?
The impact of CVE-2007-0048 includes memory consumption that can lead to application crashes in Adobe Acrobat Reader.