CVE-2015-6719

Description

The CBSharedReviewCloseDialog method in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to bypass JavaScript API execution restrictions via unspecified vectors, a different vulnerability than CVE-2015-6707, CVE-2015-6708, CVE-2015-6709, CVE-2015-6710, CVE-2015-6711, CVE-2015-6712, CVE-2015-6713, CVE-2015-6714, CVE-2015-6715, CVE-2015-6716, CVE-2015-6717, CVE-2015-6718, CVE-2015-6720, CVE-2015-6721, CVE-2015-6722, CVE-2015-6723, CVE-2015-6724, CVE-2015-6725, CVE-2015-7614, CVE-2015-7616, CVE-2015-7618, CVE-2015-7619, CVE-2015-7620, and CVE-2015-7623.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.831

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities fixed in Adobe Reader 10.1.16 update - All languages (APSB15-24)Windows
Multiple vulnerabilities fixed in Adobe Acrobat 10.1.16 Pro and Standard update - All languages (APSB15-24)Windows
Multiple vulnerabilities fixed in Adobe Reader 10.1.16 update - Multilingual (MUI) installer (APSB15-24)Windows
Multiple vulnerabilities fixed in Adobe Reader 11.0.13 update - All languages (APSB15-24)Windows
Multiple vulnerabilities fixed in Adobe Acrobat 11.0.13 Pro and Standard update - All languages (APSB15-24)Windows
Multiple vulnerabilities fixed in Adobe Reader 11.0.13 update - Multilingual (MUI) installer (APSB15-24)Windows
Multiple vulnerabilities fixed in Adobe Acrobat Reader DC 2015.009.20069Windows
Multiple vulnerabilities fixed in 2015.006.30094Windows
Multiple vulnerabilities affected in Acrobat DC 15.008.20082Windows
Multiple vulnerabilities affected in Acrobat Reader 11.0.9Windows
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC MUI 11.0.12Windows
Multiple vulnerabilities affected in Adobe Acrobat X Standard 10.1.14Windows
Multiple Vulnerabilities are affected in Adobe Acrobat DC for MAC 15.006.30060Mac
Multiple Vulnerabilities are affected in Adobe Acrobat Reader DC for MAC 15.008.20082Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-303875Adobe Reader 10.1.16 update - All languages (APSB15-24) (Deployment-Only)
PATCH-303919Adobe Acrobat 10.1.16 Pro and Standard update - All languages (APSB15-24) (Deployment-Only)
PATCH-302917Adobe Reader 10.1.16 update - Multilingual (MUI) installer (APSB15-24)
PATCH-302915Adobe Reader 11.0.13 update - All languages (APSB15-24)
PATCH-302921Adobe Acrobat 11.0.13 Pro and Standard update - All languages (APSB15-24)
PATCH-302918Adobe Reader 11.0.13 update - Multilingual (MUI) installer (APSB15-24)
PATCH-343120Adobe Acrobat Reader DC (24.004.20272)
PATCH-315460Adobe Acrobat DC Pro and Standard (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-343119Adobe Acrobat DC Pro and Standard (Continuous Track) update - All languages (24.004.20272)
PATCH-315465Adobe Acrobat Reader MUI DC (Classic Track) update - All languages (15.006.30527) (APSB20-48)
PATCH-343122Adobe Acrobat Reader DC MUI (24.004.20272)
PATCH-302922Adobe Acrobat 10.1.16 Pro and Standard update - All languages (APSB15-24) (Deployment-Only)
PATCH-611991Adobe Acrobat DC for MAC (25.001.20693)(Deployment-Only)
PATCH-611989Adobe Acrobat Reader DC for MAC (25.001.20693)(Deployment-Only)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234