Skip to content
Saturday, December 6, 2025
High Published: Jun 15, 2005 Modified: Apr 03, 2025

CVE-2005-1306

7.5 CVSS SCORE
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Share:

Description

The Adobe Reader control in Adobe Reader and Acrobat 7.0 and 7.0.1 allows remote attackers to determine the existence of files via Javascript containing XML script, aka the "XML External Entity vulnerability."

CVSS Vector Details

Attack Vector Network
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality High
Integrity None
Availability None

Affected Software Configurations

  • a adobe acrobat 7.0 * * * * * * *
  • a adobe acrobat 7.0.1 * * * * * * *
  • a adobe acrobat_reader 7.0 * * * * * * *
  • a adobe acrobat_reader 7.0.1 * * * * * * *

Weaknesses (CWE)

  • CWE-611