← Back

CVE-2016-1090

nvd nist
Published: May 11, 2016Modified: May 6, 2026

JSON object

Loading...
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

Untrusted search path vulnerability in Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allows local users to gain privileges via a Trojan horse resource in an unspecified directory, a different vulnerability than CVE-2016-1087 and CVE-2016-4106.

Affected (6)

4 products
Acrobat
Acrobat Dc
Acrobat Reader Dc
Reader
Configuration A
6 vulnerable · 2 platform
Vulnerable SoftwareAffected Versions
Up to 11.0.15
Adobe
Up to 15.006.30121
Up to 15.010.20060
Adobe
Up to 15.006.30121
Up to 15.010.20060
Up to 11.0.15
Running on/withPlatform Versions
Apple
Mac Os X
All versions
Microsoft
Windows
All versions

References (6)

Source: psirt@adobe.com
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.