{ "id": "CVE-2002-0030", "sourceIdentifier": "cve@mitre.org", "published": "2003-04-02T05:00:00.000", "lastModified": "2025-04-03T01:03:51.193", "vulnStatus": "Deferred", "cveTags": [], "descriptions": [ { "lang": "en", "value": "The digital signature mechanism for the Adobe Acrobat PDF viewer only verifies the PE header of executable code for a plug-in, which can allow attackers to execute arbitrary code in certified mode by making the plug-in appear to be signed by Adobe." }, { "lang": "es", "value": "El mecanismo de firma digital del visor de PDF Adobe Acrobat Reader s\u00f3lo verifica la cabecera PE del c\u00f3digo ejecutable de un plug-in, lo que puede permitir a atacantes ejecutar c\u00f3digo arbitrario en modo certificado haciendo que parezca que el plug-in parezca firmado por Adobe." } ], "metrics": { "cvssMetricV2": [ { "source": "nvd@nist.gov", "type": "Primary", "cvssData": { "version": "2.0", "vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P", "baseScore": 4.6, "accessVector": "LOCAL", "accessComplexity": "LOW", "authentication": "NONE", "confidentialityImpact": "PARTIAL", "integrityImpact": "PARTIAL", "availabilityImpact": "PARTIAL" }, "baseSeverity": "MEDIUM", "exploitabilityScore": 3.9, "impactScore": 6.4, "acInsufInfo": false, "obtainAllPrivilege": false, "obtainUserPrivilege": false, "obtainOtherPrivilege": true, "userInteractionRequired": false } ] }, "weaknesses": [ { "source": "nvd@nist.gov", "type": "Primary", "description": [ { "lang": "en", "value": "NVD-CWE-Other" } ] } ], "configurations": [ { "nodes": [ { "operator": "OR", "negate": false, "cpeMatch": [ { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat:4.0:*:*:*:*:*:*:*", "matchCriteriaId": "4C05F6A5-0FB3-489B-9B8B-64C569C03D7A" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat:4.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "AABA4FE3-662B-4956-904D-45086E000890" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat:4.0.5a:*:*:*:*:*:*:*", "matchCriteriaId": "998CD79C-458E-46A8-8261-1C40C53D9FA5" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat:4.0.5c:*:*:*:*:*:*:*", "matchCriteriaId": "0155FB0B-7FAD-4388-96C8-A8543B4FDFD9" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat:5.0:*:*:*:*:*:*:*", "matchCriteriaId": "201F059D-33D1-4D9F-9C6F-FC8EB49E4735" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat:5.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "B025E795-5713-485E-8A15-EBE4451A1A46" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat_reader:4.0:*:*:*:*:*:*:*", "matchCriteriaId": "F509566A-6D4A-40C0-8A16-F8765C5DCAAF" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat_reader:4.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "707D7124-6063-4510-80B4-AD9675996F67" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat_reader:4.0.5a:*:*:*:*:*:*:*", "matchCriteriaId": "200FFAE3-CC1C-4A11-99AD-377D54A67195" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat_reader:4.0.5c:*:*:*:*:*:*:*", "matchCriteriaId": "8A990E86-07C0-49E2-92D6-55E499F30FAE" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat_reader:5.0:*:*:*:*:*:*:*", "matchCriteriaId": "5F0FCA2F-FD7F-4CE5-9D45-324A7EC45105" }, { "vulnerable": true, "criteria": "cpe:2.3:a:adobe:acrobat_reader:5.0.5:*:*:*:*:*:*:*", "matchCriteriaId": "EF7EAA22-CED2-4379-9465-9562BACB1C20" } ] } ] } ], "references": [ { "url": "http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0148.html", "source": "cve@mitre.org", "tags": [ "Vendor Advisory" ] }, { "url": "http://lists.grok.org.uk/pipermail/full-disclosure/2003-March/004230.html", "source": "cve@mitre.org" }, { "url": "http://www.kb.cert.org/vuls/id/549913", "source": "cve@mitre.org", "tags": [ "Patch", "Third Party Advisory", "US Government Resource" ] }, { "url": "http://www.kb.cert.org/vuls/id/JSHA-5EZQGZ", "source": "cve@mitre.org", "tags": [ "Vendor Advisory" ] }, { "url": "http://archives.neohapsis.com/archives/vulnwatch/2003-q1/0148.html", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] }, { "url": "http://lists.grok.org.uk/pipermail/full-disclosure/2003-March/004230.html", "source": "af854a3a-2127-422b-91ae-364da2661108" }, { "url": "http://www.kb.cert.org/vuls/id/549913", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Patch", "Third Party Advisory", "US Government Resource" ] }, { "url": "http://www.kb.cert.org/vuls/id/JSHA-5EZQGZ", "source": "af854a3a-2127-422b-91ae-364da2661108", "tags": [ "Vendor Advisory" ] } ] }