CVE-2018-4993: Infoleak
Published Jul 9, 2018
·Updated
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an NTLM SSO hash theft vulnerability. Successful exploitation could lead to information disclosure.
Affected Software
8 affected components
Adobe Acrobat DC>=15.006.30060<=15.006.30417
Adobe Acrobat DC>=15.008.20082<=18.011.20038
Adobe Acrobat DC>=17.011.30059<=17.011.30079
Adobe Acrobat Reader DC>=15.006.30060<=15.006.30417
Adobe Acrobat Reader DC>=15.008.20082<=18.011.20038
Adobe Acrobat Reader DC>=17.011.30059<=17.011.30079
Apple iOS and macOS
Microsoft Windows
Remediation
Event History
Jul 9, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4993?
CVE-2018-4993 is a critical vulnerability that can lead to information disclosure.
2
How do I fix CVE-2018-4993?
To fix CVE-2018-4993, update Adobe Acrobat and Reader to the latest version that addresses this vulnerability.
3
Which versions of Adobe Acrobat and Reader are affected by CVE-2018-4993?
CVE-2018-4993 affects Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier.
4
What kind of vulnerability is CVE-2018-4993?
CVE-2018-4993 is an NTLM SSO hash theft vulnerability.
5
Can CVE-2018-4993 impact my privacy?
Yes, successful exploitation of CVE-2018-4993 could lead to unauthorized information disclosure.