CVE-2011-0587: XSS
Cross-site scripting (XSS) vulnerability in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.2, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2011-0604.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0587?
CVE-2011-0587 is considered a critical vulnerability because it allows remote attackers to execute arbitrary web scripts through cross-site scripting.
How do I fix CVE-2011-0587?
To fix CVE-2011-0587, update Adobe Reader and Acrobat to version 10.0.1 or later, 9.4.2 or later, or 8.2.6 or later.
What software versions are affected by CVE-2011-0587?
CVE-2011-0587 affects Adobe Reader and Acrobat versions prior to 10.0.1, 9.4.2, and 8.2.6.
Can I exploit CVE-2011-0587 without user interaction?
Exploitation of CVE-2011-0587 typically requires user interaction, as it often involves luring a user to open a malicious document.
What platforms are vulnerable to CVE-2011-0587?
CVE-2011-0587 affects Adobe Reader and Acrobat on both Windows and Mac OS X.