Pdf-Xchange Pdf-Tools vulnerabilities
172 known vulnerabilities affecting pdf-xchange/pdf-tools.
Total CVEs
172
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH94MEDIUM61LOW17
Vulnerabilities
Page 6 of 9
CVE-2023-39486HIGHCVSS 7.8v9.4.364.0v10.0.1.3712024-05-03
CVE-2023-39486 [HIGH] CWE-119 CVE-2023-39486: PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vuln
PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specifi
nvd
CVE-2023-42078HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42078 [HIGH] CWE-119 CVE-2023-42078: PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vuln
PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specifi
nvd
CVE-2023-40472HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-40472 [HIGH] CWE-822 CVE-2023-40472: PDF-XChange Editor JavaScript String Untrusted Pointer Dereference Remote Code Execution Vulnerabili
PDF-XChange Editor JavaScript String Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2023-39488HIGHCVSS 7.8v9.5.365.02024-05-03
CVE-2023-39488 [HIGH] CWE-416 CVE-2023-39488: PDF-XChange Editor TIF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera
PDF-XChange Editor TIF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific f
nvd
CVE-2023-42043HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42043 [HIGH] CWE-119 CVE-2023-42043: PDF-XChange Editor PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vuln
PDF-XChange Editor PDF File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specifi
nvd
CVE-2023-42044HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42044 [HIGH] CWE-125 CVE-2023-42044: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. his vuln
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. his vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specifi
nvd
CVE-2023-42060HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42060 [HIGH] CWE-125 CVE-2023-42060: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specif
nvd
CVE-2023-42108HIGHCVSS 7.8v10.1.0.3802024-05-03
CVE-2023-42108 [HIGH] CWE-416 CVE-2023-42108: PDF-XChange Editor EMF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera
PDF-XChange Editor EMF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific f
nvd
CVE-2023-27344HIGHCVSS 7.8v9.4.364.02024-05-03
CVE-2023-27344 [HIGH] CWE-787 CVE-2023-27344: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-27342HIGHCVSS 7.8v9.4.364.02024-05-03
CVE-2023-27342 [HIGH] CWE-822 CVE-2023-27342: PDF-XChange Editor EMF File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerabilit
PDF-XChange Editor EMF File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2023-42047HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42047 [HIGH] CWE-119 CVE-2023-42047: PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vuln
PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specifi
nvd
CVE-2023-42063HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42063 [HIGH] CWE-125 CVE-2023-42063: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul
PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specif
nvd
CVE-2023-42074HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42074 [HIGH] CWE-843 CVE-2023-42074: PDF-XChange Editor addScript Type Confusion Remote Code Execution Vulnerability. This vulnerability
PDF-XChange Editor addScript Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw exis
nvd
CVE-2023-27337HIGHCVSS 7.8v9.4.362.02024-05-03
CVE-2023-27337 [HIGH] CWE-125 CVE-2023-27337: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specif
nvd
CVE-2023-42082HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42082 [HIGH] CWE-416 CVE-2023-42082: PDF-XChange Editor JPG File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnera
PDF-XChange Editor JPG File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific f
nvd
CVE-2023-42040HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42040 [HIGH] CWE-416 CVE-2023-42040: PDF-XChange Editor mailForm Use-After-Free Code Execution Vulnerability. This vulnerability allows r
PDF-XChange Editor mailForm Use-After-Free Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The specific flaw exists with
nvd
CVE-2023-42077HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42077 [HIGH] CWE-122 CVE-2023-42077: PDF-XChange Editor EMF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability.
PDF-XChange Editor EMF File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The
nvd
CVE-2023-39485HIGHCVSS 7.8v9.4.364.0v10.0.1.3712024-05-03
CVE-2023-39485 [HIGH] CWE-787 CVE-2023-39485: PDF-XChange Editor JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-27340HIGHCVSS 7.8v9.4.364.02024-05-03
CVE-2023-27340 [HIGH] CWE-787 CVE-2023-27340: PDF-XChange Editor PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu
PDF-XChange Editor PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
The speci
nvd
CVE-2023-42069HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42069 [HIGH] CWE-121 CVE-2023-42069: PDF-XChange Editor PDF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability.
PDF-XChange Editor PDF File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
T
nvd