Pdf-Xchange Pdf-Tools vulnerabilities
172 known vulnerabilities affecting pdf-xchange/pdf-tools.
Total CVEs
172
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH94MEDIUM61LOW17
Vulnerabilities
Page 4 of 9
CVE-2024-8816MEDIUMCVSS 5.5v10.3.0.3862024-11-22
CVE-2024-8816 [MEDIUM] CWE-416 CVE-2024-8816: PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulner
PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The s
nvd
CVE-2024-8839MEDIUMCVSS 5.5v10.3.0.3862024-11-22
CVE-2024-8839 [MEDIUM] CWE-125 CVE-2024-8839: PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu
PDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
T
nvd
CVE-2024-8849MEDIUMCVSS 5.5v10.3.1.3872024-11-22
CVE-2024-8849 [MEDIUM] CWE-125 CVE-2024-8849: PDF-XChange Editor AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerabil
PDF-XChange Editor AcroForm Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-42064HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42064 [HIGH] CWE-125 CVE-2023-42064: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specif
nvd
CVE-2023-32160HIGHCVSS 7.8v9.3.361.02024-05-03
CVE-2023-32160 [HIGH] CWE-787 CVE-2023-32160: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-42062HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42062 [HIGH] CWE-457 CVE-2023-42062: PDF-XChange Editor U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability. This
PDF-XChange Editor U3D File Parsing Uninitialized Variable Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The sp
nvd
CVE-2023-27348HIGHCVSS 7.8v9.4.364.02024-05-03
CVE-2023-27348 [HIGH] CWE-416 CVE-2023-27348: PDF-XChange Editor TIF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera
PDF-XChange Editor TIF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific f
nvd
CVE-2023-27339HIGHCVSS 7.8v9.4.364.02024-05-03
CVE-2023-27339 [HIGH] CWE-787 CVE-2023-27339: PDF-XChange Editor PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-42051HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42051 [HIGH] CWE-787 CVE-2023-42051: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-39506HIGHCVSS 7.8v9.5.367.02024-05-03
CVE-2023-39506 [HIGH] CWE-22 CVE-2023-39506: PDF-XChange Editor createDataObject Directory Traversal Remote Code Execution Vulnerability. This vu
PDF-XChange Editor createDataObject Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specif
nvd
CVE-2023-39490HIGHCVSS 7.8v9.5.366.02024-05-03
CVE-2023-39490 [HIGH] CWE-787 CVE-2023-39490: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-42045HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42045 [HIGH] CWE-125 CVE-2023-42045: PDF-XChange Editor J2K File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul
PDF-XChange Editor J2K File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specif
nvd
CVE-2023-27341HIGHCVSS 7.8v9.4.362.02024-05-03
CVE-2023-27341 [HIGH] CWE-787 CVE-2023-27341: PDF-XChange Editor TIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor TIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-32161HIGHCVSS 7.8v9.3.361.02024-05-03
CVE-2023-32161 [HIGH] CWE-787 CVE-2023-32161: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-39501HIGHCVSS 7.8v9.5.366.02024-05-03
CVE-2023-39501 [HIGH] CWE-822 CVE-2023-39501: PDF-XChange Editor OXPS File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerabili
PDF-XChange Editor OXPS File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2023-39493HIGHCVSS 7.8v9.5.366.02024-05-03
CVE-2023-39493 [HIGH] CWE-749 CVE-2023-39493: PDF-XChange Editor exportAsText Exposed Dangerous Method Remote Code Execution Vulnerability. This v
PDF-XChange Editor exportAsText Exposed Dangerous Method Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The spec
nvd
CVE-2023-42059HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42059 [HIGH] CWE-416 CVE-2023-42059: PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera
PDF-XChange Editor U3D File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific f
nvd
CVE-2023-39502HIGHCVSS 7.8v9.5.366.02024-05-03
CVE-2023-39502 [HIGH] CWE-787 CVE-2023-39502: PDF-XChange Editor OXPS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This v
PDF-XChange Editor OXPS File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The spec
nvd
CVE-2023-42041HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42041 [HIGH] CWE-416 CVE-2023-42041: PDF-XChange Editor Annotation Use-After-Free Remote Code Execution Vulnerability. This vulnerability
PDF-XChange Editor Annotation Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw ex
nvd
CVE-2023-42085HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42085 [HIGH] CWE-122 CVE-2023-42085: PDF-XChange Editor EMF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability.
PDF-XChange Editor EMF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The
nvd