CVE-2025-27174
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2025-27174 is a Use After Free vulnerability that affects Adobe Acrobat Reader versions 24.001.30225, 20.005.30748, and 25.001.20428, as well as earlier editions. This issue could potentially allow an attacker to execute arbitrary code in the context of the current user, by manipulating a malicious file that the victim must open for exploitation to occur. Adobe has released patches to address this vulnerability, and it is recommended that users install the updates promptly to protect against potential attacks. Failure to do so could result in unauthorized access to sensitive information or compromise of the affected system.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Adobe Reader XI
Affected Vendors
- Adobe