peter bassill · operator
$ cve CVE-2003-0434 JSON

CVE-2003-0434 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 40.9% (pctl 99)

Patch early

A public exploit exists.

Description

Various PDF viewers including (1) Adobe Acrobat 5.06 and (2) Xpdf 1.01 allow remote attackers to execute arbitrary commands via shell metacharacters in an embedded hyperlink.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS40.94% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2003-07-24
Last modified2026-06-16

Affected (7)

VendorProduct
adobeacrobat
mandrakesoftmandrake linux
mandrakesoftmandrake linux corporate server
redhatenterprise linux
redhatlinux
redhatlinux advanced workstation
xpdfxpdf

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD