CVE-2025-27158
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Mar 11, 2025
Updated: Mar 12, 2025
CWE ID 824
Summary
CVE-2025-27158 is a newly disclosed vulnerability impacting Acrobat Reader versions 24.001.30225, 20.005.30748, and 25.001.20428, and potentially older editions. This issue is classified as an Access of Uninitialized Pointer vulnerability, which enables an attacker to execute arbitrary code once a victim opens a maliciously crafted file. Successful exploitation of this vulnerability requires user interaction.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe Reader XI
Affected Vendors
- Adobe