CVE-2026-80159: Acrobat Reader | Untrusted Search Path (CWE-426)
Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What does an attacker need to exploit this issue?
The attacker must already have high privileges and must persuade a victim to open a malicious file. Exploitation also depends on conditions beyond the attacker’s control.
Is this likely to be remotely exploitable without user involvement?
No. The supplied vector identifies local access and required user interaction; a victim must open a malicious file.
What is the expected impact if exploitation succeeds?
Successful exploitation could allow privilege escalation and elevated access. The provided impact information indicates confidentiality impact, with no integrity or availability impact stated.