VYPR
Medium severity5.5NVD Advisory· Published Nov 12, 2020· Updated Jun 17, 2026

CVE-2020-24441

CVE-2020-24441

Description

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.

Affected products

3
  • cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:android:*:*+ 2 more
    • cpe:2.3:a:adobe:acrobat_reader:*:*:*:*:*:android:*:*range: <=20.6.2
    • (no CPE)range: <=20.6.2
    • (no CPE)range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.