CVE-2012-0776
UnknownEPSS 8.13%
Last modified
CVE-2012-0776 is a vulnerability of currently unknown severity. The installer in Adobe Reader 9.x before 9.5.1 and 10.x before 10.1.3 allows attackers to bypass intended access restrictions and execute arbitrary code via unspecified vectors.. EPSS estimates a 8.13% chance of exploitation in the next 30 days.
Description
The installer in Adobe Reader 9.x before 9.5.1 and 10.x before 10.1.3 allows attackers to bypass intended access restrictions and execute arbitrary code via unspecified vectors.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Adobe | Acrobat Reader | 9.0 |
| Adobe | Acrobat Reader | 9.1 |
| Adobe | Acrobat Reader | 9.1.1 |
| Adobe | Acrobat Reader | 9.1.2 |
| Adobe | Acrobat Reader | 9.1.3 |
| Adobe | Acrobat Reader | 9.2 |
| Adobe | Acrobat Reader | 9.3 |
| Adobe | Acrobat Reader | 9.3.1 |
| Adobe | Acrobat Reader | 9.3.2 |
| Adobe | Acrobat Reader | 9.3.3 |
| Adobe | Acrobat Reader | 9.3.4 |
| Adobe | Acrobat Reader | 9.4 |
| Adobe | Acrobat Reader | 9.4.1 |
| Adobe | Acrobat Reader | 9.4.2 |
| Adobe | Acrobat Reader | 9.4.3 |
| Adobe | Acrobat Reader | 9.4.4 |
| Adobe | Acrobat Reader | 9.4.5 |
| Adobe | Acrobat Reader | 9.4.6 |
| Adobe | Acrobat Reader | 9.4.7 |
| Adobe | Acrobat Reader | 9.5 |
| Adobe | Acrobat | 9.0 |
| Adobe | Acrobat | 9.1 |
| Adobe | Acrobat | 9.1.1 |
| Adobe | Acrobat | 9.1.2 |
| Adobe | Acrobat | 9.1.3 |
| Adobe | Acrobat | 9.2 |
| Adobe | Acrobat | 9.3 |
| Adobe | Acrobat | 9.3.1 |
| Adobe | Acrobat | 9.3.2 |
| Adobe | Acrobat | 9.3.3 |
| Adobe | Acrobat | 9.3.4 |
| Adobe | Acrobat | 9.4 |
| Adobe | Acrobat | 9.4.1 |
| Adobe | Acrobat | 9.4.2 |
| Adobe | Acrobat | 9.4.3 |
| Adobe | Acrobat | 9.4.4 |
| Adobe | Acrobat | 9.4.5 |
| Adobe | Acrobat | 9.4.6 |
| Adobe | Acrobat | 9.4.7 |
| Adobe | Acrobat | 9.5 |
| Adobe | Acrobat | 10.0 |
| Adobe | Acrobat | 10.0.1 |
| Adobe | Acrobat | 10.0.2 |
| Adobe | Acrobat | 10.0.3 |
| Adobe | Acrobat | 10.1 |
| Adobe | Acrobat | 10.1.1 |
| Adobe | Acrobat | 10.1.2 |
References
- http://www.adobe.com/support/security/bulletins/apsb12-08.htmlPatch, Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA12-101B.htmlUS Government Resource
- http://www.adobe.com/support/security/bulletins/apsb12-08.htmlPatch, Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA12-101B.htmlUS Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2012-0776?
The installer in Adobe Reader 9.x before 9.5.1 and 10.x before 10.1.3 allows attackers to bypass intended access restrictions and execute arbitrary code via unspecified vectors.
How severe is CVE-2012-0776?
Severity scoring for CVE-2012-0776 is pending analysis. The EPSS model estimates a 8.13% probability of exploitation in the next 30 days.
How do I fix CVE-2012-0776?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2012
- CVE-2012-0770Adobe ColdFusion 8.0, 8.0.1, 9.0, and 9.0.1 computes hash va…
- CVE-2012-0771Adobe Shockwave Player before 11.6.4.634 allows attackers to…
- CVE-2012-0772An unspecified ActiveX control in Adobe Flash Player before …
- CVE-2012-0773The NetStream class in Adobe Flash Player before 10.3.183.18…
- CVE-2012-0774Integer overflow in Adobe Reader and Acrobat 9.x before 9.5.…
- CVE-2012-0775The JavaScript implementation in Adobe Reader and Acrobat 9.…
- CVE-2012-0777The JavaScript API in Adobe Reader and Acrobat 9.x before 9.…
- CVE-2012-0778Buffer overflow in Adobe Flash Professional before CS6 allow…
- CVE-2012-0779Adobe Flash Player before 10.3.183.19 and 11.x before 11.2.2…
- CVE-2012-0780Adobe Illustrator before CS6 allows attackers to execute arb…
- CVE-2012-0781The tidy_diagnose function in PHP 5.3.8 might allow remote a…
- CVE-2012-0782Multiple cross-site scripting (XSS) vulnerabilities in wp-ad…
Are you affected by CVE-2012-0776?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
