PoC Index

CVE-2011-2462

KEVHIGH 10.0EPSS 86.6%

Unspecified vulnerability in the U3D component in Adobe Reader and Acrobat 10.1.1 and earlier on Windows and Mac OS X, and Adobe Reader 9.x through 9.4.6 on UNIX, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unknown vectors, as exploited in the wild in December 2011.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
86.56% chance of exploitation in the next 30 days, 100th percentile
CISA KEV
added 2022-06-08
Published
2011-12-07
Updated
2025-11-21

Proof-of-concept exploits (3)

Metasploit modules (1)

ExploitDB entries (1)

References

Related