CVE-2014-5315: XSS
Cross-site scripting (XSS) vulnerability in the Help page in Adobe Acrobat 9.5.2 and earlier and ColdFusion 8.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability associated with CVE-2014-5315?
CVE-2014-5315 is a cross-site scripting (XSS) vulnerability in Adobe Acrobat 9.5.2 and earlier as well as ColdFusion 8.0.1 and earlier, allowing remote attackers to inject arbitrary web script or HTML.
What is the severity of CVE-2014-5315?
The severity of CVE-2014-5315 is considered high due to its potential for exploitation by remote attackers to execute malicious scripts.
How do I fix CVE-2014-5315?
To fix CVE-2014-5315, it is recommended to update Adobe Acrobat to version 9.5.3 or later and ColdFusion to version 8.0.2 or later.
Who is affected by CVE-2014-5315?
CVE-2014-5315 affects users running Adobe Acrobat 9.5.2 or earlier and ColdFusion 8.0.1 or earlier.
Is there a workaround for CVE-2014-5315?
A temporary workaround for CVE-2014-5315 would be to limit access to the affected applications or disable JavaScript execution until a patch is applied.