CVE-2016-1077
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 17%
from disclosure to weapon0 days
Published on NVDMay 11
1st PoCMay 10
exploitation probability
17%top 3% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Adobe Reader and Acrobat before 11.0.16, Acrobat and Acrobat Reader DC Classic before 15.006.30172, and Acrobat and Acrobat Reader DC Continuous before 15.016.20039 on Windows and OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-1037, CVE-2016-1063, CVE-2016-1064, CVE-2016-1071, CVE-2016-1072, CVE-2016-1073, CVE-2016-1074, CVE-2016-1076, CVE-2016-1078, CVE-2016-1080, CVE-2016-1081, CVE-2016-1082, CVE-2016-1083, CVE-2016-1084, CVE-2016-1085, CVE-2016-1086, CVE-2016-1088, CVE-2016-1093, CVE-2016-1095, CVE-2016-1116, CVE-2016-1118, CVE-2016-1119, CVE-2016-1120, CVE-2016-1123, CVE-2016-1124, CVE-2016-1125, CVE-2016-1126, CVE-2016-1127, CVE-2016-1128, CVE-2016-1129, CVE-2016-1130, CVE-2016-4088, CVE-2016-4089, CVE-2016-4090, CVE-2016-4093, CVE-2016-4094, CVE-2016-4096, CVE-2016-4097, CVE-2016-4098, CVE-2016-4099, CVE-2016-4100, CVE-2016-4101, CVE-2016-4103, CVE-2016-4104, and CVE-2016-4105.
Affected products
n/a · n/apublic PoCs found — 3
cve_referencepacketstormsecurity.com/files/137035/Adobe-Reader-DC-15.010.20060-Memory-Corruption.htmlunverifiedcve_referencewww.exploit-db.com/exploits/39799/unverifiedexploitdbwww.exploit-db.com/exploits/39799unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://packetstormsecurity.com/files/137035/Adobe-Reader-DC-15.010.20060-Memory-Corruption.htmlhttps://0patch.blogspot.com/2016/06/writing-0patch-for-acrobat-readers-use.htmlhttps://helpx.adobe.com/security/products/acrobat/apsb16-14.htmlhttps://www.exploit-db.com/exploits/39799/http://www.securitytracker.com/id/1035828