CVE-2026-80159
4
CVSS:3.1/AV:L/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N
Summary
Acrobat Reader is affected by an Untrusted Search Path vulnerability that could result in privilege escalation. An attacker with high privileges could leverage this vulnerability to gain elevated access. Exploit depends on conditions beyond the attacker's control. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Adobe | Adobe Acrobat | 0 <= 26.002.21900 | affected |
| Adobe | Adobe Acrobat | 26.002.21901 | unaffected |
| Adobe | Acrobat Reader | 0 <= 26.002.21900 | affected |
| Adobe | Acrobat Reader | 26.002.21901 | unaffected |
| Adobe | Acrobat 2024 | 0 <= 24.001.30383 | affected |
| Adobe | Acrobat 2024 | 24.001.30429 | unaffected |
Weaknesses
- CWE-426: Untrusted Search Path (CWE-426)
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.