CVE-2010-0188
Description
Unspecified vulnerability in Adobe Reader and Acrobat 8.x before 8.2.1 and 9.x before 9.3.1 allows attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.
In plain language
AI Act nowCVE-2010-0188 is a serious Adobe Reader/Acrobat flaw that has been used in real-world ransomware attacks, so small businesses running these older versions should update to the fixed releases (8.2.1 or 9.3.1) as soon as possible.
CVE-2010-0188 is a vulnerability in Adobe Reader/Acrobat versions prior to 8.2.1 and 9.3.1 that can be triggered through malicious content to cause a denial of service (crash) or potentially arbitrary code execution; it is listed in CISA KEV for use in ransomware campaigns.
What to do now
- Check which version of Adobe Acrobat/Adobe Reader is installed on each workstation.
- If you’re using Adobe Acrobat (8.x) older than 8.2.1, upgrade to 8.2.1.
- If you’re using Adobe Acrobat/Adobe Reader (9.x) older than 9.3.1, upgrade to 9.3.1.
- If you can’t immediately upgrade, block Adobe Reader/Acrobat from opening documents from untrusted sources and restrict access until updates are applied.
CVSS Vector Breakdown
AV:LAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
Required action: Apply updates per vendor instructions.
References
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2010-0188 and every CVE in our database. Create a free account — no credit card required.
Create Free Account