VULNERABILITY INTELLIGENCE
CVE-2018-5040
CVSS score8.8 HIGH
EPSS probability11.12%
CISA KEVNot currently listed
Published2018-07-20
Last modified2026-06-17
CVSS vectorCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
Adobe Acrobat and Reader 2018.011.20040 and earlier, 2017.011.30080 and earlier, and 2015.006.30418 and earlier versions have a Heap Overflow vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
Weakness classification
- CWE-787: Out-of-bounds Write
Primary references
- psirt@adobe.com — Third Party Advisory, VDB Entry
- psirt@adobe.com — Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Third Party Advisory, VDB Entry
- af854a3a-2127-422b-91ae-364da2661108 — Vendor Advisory