CVE-2026-81996
Acrobat Reader is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. A low-privileged attacker could exploit this vulnerability to gain elevated access. Exploitation of this issue does not require user interaction. Scope is changed.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.8
- CVSS vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
- CWE
- CWE-863
- Published
- 2026-09-08
- Last modified
- 2026-09-09
Affected products
- Adobe Adobe Acrobat
- Adobe Adobe Acrobat
- Adobe Acrobat Reader
- Adobe Acrobat Reader
- Adobe Acrobat 2024
- Adobe Acrobat 2024
Weakness type
Related vulnerabilities
- CVE-2026-85978 — Unauthenticated Remote Code Execution in Akana API Platform
- CVE-2026-14892 — Tanium addressed an improper access controls vulnerability in Tanium Server.
- CVE-2026-87046 — Tanium addressed an improper access controls vulnerability in Comply.
- CVE-2026-87075 — Tanium addressed an improper access controls vulnerability in Comply.
- CVE-2026-87544 — Incorrect authorization in Extensions in Google Chrome prior to 153.0.8010.36 allowed a remote...
- CVE-2026-87575 — Incorrect authorization in Loader in Google Chrome prior to 153.0.8010.36 allowed a remote attacker...
- CVE-2026-87473 — Incorrect authorization in FileHandling in Google Chrome prior to 153.0.8010.36 allowed a remote...
- CVE-2026-87509 — Incorrect authorization in Updater in Google Chrome on on Windows prior to 153.0.8010.36 allowed a...