Junglewise Threat Intelligence

CVE-2010-0188: Adobe Reader and Acrobat Arbitrary Code Execution Vulnerability

CVE-2010-0188 · Severity: critical · CVSS 9.3 · Exploited in the wild · Published 2022-03-03

Technologies: Adobe Acrobat, Adobe Reader, Adobe Flash Player, Adobe AIR. Vendors: Adobe.

Executive brief

An unspecified vulnerability in Adobe Reader and Acrobat allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via unknown vectors. The vulnerability has been confirmed to be exploited in the wild and is included in CISA's Known Exploited Vulnerabilities catalog.

Affected products

  • Adobe Reader 8.x before 8.2.1, 9.x before 9.3.1
  • Adobe Acrobat 8.x before 8.2.1, 9.x before 9.3.1

Timeline

  • 2010-02-16: advisory: Initial Adobe security bulletin APSB10-07 released
  • 2022-03-03: kev added: Added to CISA Known Exploited Vulnerabilities catalog

Related threats