VDB

GCVE-110-NCSC-2025-388

GCVE-110-NCSC-2025-388
Advisory PublishedCVSS 7.8/10
Vulnetix · Advisory published December 10, 2025
Multiple versions of Acrobat Reader are susceptible to an Untrusted Search Path vulnerability, enabling attackers to execute arbitrary code by redirecting the application's search path to malicious programs.

Weaknesses (CWE)

CWE-426Untrusted Search PathCWE-347Improper Verification of Cryptographic SignatureCWE-125Out-of-bounds Read

Risk Scores

CVSS 3.1
7.8/10
High · CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
Adobevers:unknown/*

References

advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

74,352 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›