CVE-2020-24441: Adobe Acrobat Reader

Medium severity, CVSS 5.5. EPSS: 2.3% chance of exploitation in the next 30 days.

Adobe Acrobat Reader for Android version 20.6.2 (and earlier) does not properly restrict access to directories created by the application. This could result in disclosure of sensitive information stored in databases used by the application. Exploitation requires a victim to download and run a malicious application.

Affected products

  • Adobe Acrobat Reader: up to and including 20.6.2

Published 2020-11-12. Last modified 2026-06-17.