Exploited Vulnerabilities Daily
🌐 English

Home › Adobe

CVE-2008-2992: Adobe Acrobat and Reader

EPSS98.4%No. 252 of 1739 in KEV
CVE year2008~14 yrs before listing
Same vendor in KEV82
Same product13
FieldValue
VendorAdobe
ProductAcrobat and Reader
NameAdobe Reader and Acrobat Input Validation Vulnerability
Added to KEV2022-03-03
US federal due date2022-03-24
Ransomware useKnown
CWECWE-119

CISA description

Adobe Acrobat and Reader contain an input validation issue in a JavaScript method that could potentially lead to remote code execution.

Other entries for this product

CVEVendor / productAddedEPSSRansomware
CVE-2009-3459Adobe Acrobat and Reader2026-05-2086.5%Unknown
CVE-2026-34621Adobe Acrobat and Reader2026-04-132.1%Unknown
CVE-2023-21608Adobe Acrobat and Reader2023-10-1061.4%Unknown
CVE-2023-26369Adobe Acrobat and Reader2023-09-146.7%Unknown
CVE-2018-4990Adobe Acrobat and Reader2022-06-0836.2%Unknown
CVE-2010-2883Adobe Acrobat and Reader2022-06-0881.3%Unknown
CVE-2009-4324Adobe Acrobat and Reader2022-06-0881.8%Unknown
CVE-2009-3953Adobe Acrobat and Reader2022-06-0883.2%Unknown
CVE-2008-0655Adobe Acrobat and Reader2022-06-0837.8%Unknown
CVE-2007-5659Adobe Acrobat and Reader2022-06-0887.4%Unknown
CVE-2021-28550Adobe Acrobat and Reader2021-11-0351.8%Unknown
CVE-2021-21017Adobe Acrobat and Reader2021-11-0386.3%Unknown

NVD — CVE-2008-2992

Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page

A Adobe Acrobat and Reader vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2022-03-03.