Article: NEW YORK OFFICE OF CYBER SECURITY AND CRITICAL INFRASTRUCTURE COORDINATION ISSUES ADVISORY THAT ADOBE ACROBAT READER PLUGIN IS PRONE TO CROSS-SITE SCRIPTING ATTACKS

The New York State Office of Cyber Security and Critical Infrastructure Coordination issued the following advisory:

CSCIC ADVISORY NUMBER:2007-001

DATE(S) ISSUED:1/05/2007

SUBJECT:Adobe Acrobat Reader Plugin is Prone to Cross-Site Scripting Attacks

OVERVIEW:

A vulnerability has been found in multiple versions of the Adobe Acrobat Reader Plugin, which allows users to view Portable Document Format (PDF) files via a web browser such as Internet Explorer or Firefox. The Adobe Acrobat Reader installs the plugin by default. Please note that only the Adobe Acrobat Reader Plugin is vulnerable to this attack. This vulnerability can be exploited if an attacker can convince a user to click on a ...

Related newspaper, magazine, and journal articles:

 
 
Newsweek Harper's Magazine The Washington Post Chicago Tribune Crain's Chicago Business PRNewswire Pediatric News The Nation Advertising Age The Economist (US) A FREE trial gives you access to over 80 million articles! Access over 6,500 publications with a FREE trial!