CVE-2006-1787

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/04/2006
Last modified:
03/04/2025

Description

Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:adobe:document_server:6.0:*:reader_extensions:*:*:*:*:*