CVE-2006-3452
4.6
CVSS SCORE
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P
Description
Adobe Reader and Acrobat 6.0.4 and earlier, on Mac OSX, has insecure file and directory permissions, which allows local users to gain privileges by overwriting program files.
CVSS Vector Details
Attack Vector
Local
Attack Complexity
Low
Confidentiality
P
Integrity
P
Availability
P
Affected Software Configurations
- a adobe acrobat * * mac_os_x * * * * *
- a adobe acrobat 3.0 * mac_os_x * * * * *
- a adobe acrobat 3.1 * mac_os_x * * * * *
- a adobe acrobat 4.0 * mac_os_x * * * * *
- a adobe acrobat 4.0.5 * mac_os_x * * * * *
- a adobe acrobat 4.0.5a * mac_os_x * * * * *
- a adobe acrobat 4.0.5c * mac_os_x * * * * *
- a adobe acrobat 5.0 * mac_os_x * * * * *
- a adobe acrobat 5.0.5 * mac_os_x * * * * *
- a adobe acrobat 5.0.10 * mac_os_x * * * * *
Weaknesses (CWE)
- NVD-CWE-Other
References & External Links
- http://secunia.com/advisories/21016
- http://securitytracker.com/id?1016473
- http://www.adobe.com/support/security/bulletins/apsb06-08.html
- http://www.osvdb.org/27157
- http://www.securityfocus.com/bid/18945
- http://www.vupen.com/english/advisories/2006/2758
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27678
- http://secunia.com/advisories/21016
- http://securitytracker.com/id?1016473
- http://www.adobe.com/support/security/bulletins/apsb06-08.html
- http://www.osvdb.org/27157
- http://www.securityfocus.com/bid/18945
- http://www.vupen.com/english/advisories/2006/2758
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27678