Adobe Document Server for Reader Extensions 6.0 does not provide proper access control, which allows remote authenticated users to perform privileged actions by modifying the (1) actionID and (2) pageID parameters. NOTE: due to an error during reservation, this identifier was inadvertently associated with multiple issues. Other CVE identifiers have been assigned to handle other problems that are covered by the same disclosure.
References
Configurations
History
21 Nov 2024, 00:09
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/15924 - Vendor Advisory | |
References | () http://secunia.com/secunia_research/2005-68/advisory/ - Vendor Advisory | |
References | () http://securitytracker.com/id?1015905 - | |
References | () http://www.adobe.com/support/techdocs/322699.html - | |
References | () http://www.securityfocus.com/archive/1/430869/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/17500 - | |
References | () http://www.vupen.com/english/advisories/2006/1342 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/25769 - |
Information
Published : 2006-04-13 18:02
Updated : 2024-11-21 00:09
NVD link : CVE-2006-1627
Mitre link : CVE-2006-1627
CVE.ORG link : CVE-2006-1627
JSON object : View
Products Affected
adobe
- acrobat_reader
CWE