Adobe Reader and Acrobat 'newplayer()' JavaScript Method Remote Code Execution Vulnerability

The issue is being exploited in the wild. Symantec products detect this malicious PDF file as Trojan.Pidief.H.

Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.

A working commercial exploit is available through VUPEN's Exploit and PoC Service. This exploit is not otherwise publicly available or known to be circulating in the wild.

The following exploit code is available:


 

Privacy Statement
Copyright 2010, SecurityFocus