Description
This detection identifies exploitation attempts targeting CVE-2009-0927, which has a HIGH severity rating. Stack-based buffer overflow in Adobe Reader and Adobe Acrobat 9 before 9.1, 8 before 8.1.3 , and 7 before 7.1.1 allows remote cyberattackers to execute arbitrary code via a crafted argument to the getIcon method of a Collab object, a different vulnerability than CVE-2009-0658.
Stats
- First seen
- January 2022
- Last seen
- October 2026
CVEs
Alert name variants
| Alert Name |
|---|
| Document-PDF.Exploit.CVE-2009-0927 |
| Exploit.CVE-2009-0927.Gen |
| Script-JS.Exploit.CVE-2009-0927 |
Related IPS Signatures
| Signature Name |
|---|
| MALWARE-CNC Phoenix exploit kit post-compromise behavior |