Risk: High
A vulnerability discovered in Adobe Reader 7.0.8 could permit malicious people to inject arbitrary JavaScript into a browser session.
This vulnerability is specific to Windows and Linux operating systems. The issue is remotely exploitable and Adobe has provided workarounds to prevent cross site scripting from the server side.
For further information, the full Adobe advisory is available at:
http://www.adobe.com/support/security/bulletins/apsb07-01.html