Vulnerability Database

319,478

Total vulnerabilities in the database

CVE-2018-4995

Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have an XFA '\n' POST injection vulnerability. Successful exploitation could lead to a security bypass.

  • Published: Jul 9, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2018-4995
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
adobe / acrobat_dc 15.006.30060 15.006.30417.x
adobe / acrobat_dc 15.008.20082 18.011.20038.x
adobe / acrobat_dc 17.011.30059 17.011.30079.x
adobe / acrobat_reader_dc 15.006.30060 15.006.30417.x
adobe / acrobat_reader_dc 15.008.20082 18.011.20038.x
adobe / acrobat_reader_dc 17.011.30059 17.011.30079.x