Intrusion Prevention

Adobe.Reader.URI.File.Path.Handling.Information.Disclosure

Description

This indicates an attack attempt against an information disclosure vulnerability in Adobe Reader and Adobe Acrobat.
The vulnerability is caused when launching "file://" URLs from within PDF files. An attacker can exploit this vulnerability by creating a specially crafted PDF file containing a "file://" URL.

Affected Products

Adobe Acrobat 8.x
Adobe Reader 8.x

Impact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

Recommended Actions

Upgrade to the latest version, available from the website.
http://www.adobe.com/

CVE References

CVE-2007-1199