LOW · 2.6

CVE-2006-1787

Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed w...

Vulnerability Description

Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed within that session.

CVSS Score

2.6

LOW

AV:N/AC:H/Au:N/C:P/I:N/A:N
Confidentiality
PARTIAL
Integrity
NONE
Availability
NONE

Affected Products

VendorProductVersions
AdobeDocument Server6.0

References

FAQ

What is CVE-2006-1787?

CVE-2006-1787 is a vulnerability with a CVSS score of 2.6 (LOW). Adobe Document Server for Reader Extensions 6.0 includes a user's session (jsession) ID in the HTTP Referer header, which allows remote attackers to gain access to PDF files that are being processed w...

How severe is CVE-2006-1787?

CVE-2006-1787 has been rated LOW with a CVSS base score of 2.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2006-1787?

Check the references section above for vendor advisories and patch information. Affected products include: Adobe Document Server.