VDB
CVE-2003-0284
CVE-2003-0284
PUBLISHED
CVSS 7.5 HIGH
Adobe Acrobat 5 does not properly validate JavaScript in PDF files, which allows remote attackers to write arbitrary files into the Plug-ins folder that spread to other PDF documents, as demonstrated by the W32.Yourde virus.
EPSS 1.22% · 79.5th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
1.22%
79.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| adobe | acrobat | 5.0 |
Timeline
- May 14, 2003 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Apr 29, 2022 CVE Updated
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- VU#184820 third-party-advisory
- http://www.adobe.com/support/downloads/detail.jsp?ftpID=2121 url
- https://nvd.nist.gov/vuln/detail/CVE-2003-0284 advisory