Vulnerability Database

296,746

Total vulnerabilities in the database

CVE-2023-21586

Adobe Acrobat Reader versions 22.003.20282 (and earlier), 22.003.20281 (and earlier) and 20.005.30418 (and earlier) are affected by a NULL Pointer Dereference vulnerability. An unauthenticated attacker could leverage this vulnerability to achieve an application denial-of-service in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

  • Published: Dec 19, 2024
  • Updated: May 4, 2025
  • CVE: CVE-2023-21586
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.5
  • AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

CWEs:

Software From Fixed in
adobe / acrobat_dc 15.008.20082 22.003.20282.x
adobe / acrobat_reader_dc 15.008.20082 22.003.20282.x
adobe / acrobat_dc 15.008.20082 22.003.20281.x
adobe / acrobat_reader_dc 15.008.20082 22.003.20281.x
adobe / acrobat 20.001.30005 20.005.30418.x
adobe / acrobat_reader 20.001.30005 20.005.30418.x