Pdf-Xchange Pdf-Tools vulnerabilities

172 known vulnerabilities affecting pdf-xchange/pdf-tools.

Total CVEs
172
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH94MEDIUM61LOW17

Vulnerabilities

Page 9 of 9
CVE-2023-42084MEDIUMCVSS 5.5v10.0.1.3712024-05-03
CVE-2023-42084 [MEDIUM] CWE-125 CVE-2023-42084: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2023-39504MEDIUMCVSS 5.5v9.5.366.02024-05-03
CVE-2023-39504 [MEDIUM] CWE-125 CVE-2023-39504: PDF-XChange Editor OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This v PDF-XChange Editor OXPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2024-27327HIGHCVSS 7.8v10.1.1.3812024-04-01
CVE-2024-27327 [HIGH] CWE-787 CVE-2024-27327: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The speci
nvd
CVE-2024-27323HIGHCVSS 7.5v10.1.1.3812024-04-01
CVE-2024-27323 [HIGH] CWE-295 CVE-2024-27323: PDF-XChange Editor Updater Improper Certificate Validation Remote Code Execution Vulnerability. This PDF-XChange Editor Updater Improper Certificate Validation Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is not required to exploit this vulnerability. The specific flaw exists within the update functionality. The is
nvd
CVE-2024-27328MEDIUMCVSS 5.5v10.1.1.3812024-04-01
CVE-2024-27328 [MEDIUM] CWE-125 CVE-2024-27328: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2024-27325MEDIUMCVSS 5.5v10.1.1.3812024-04-01
CVE-2024-27325 [MEDIUM] CWE-125 CVE-2024-27325: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2024-27326MEDIUMCVSS 5.5v10.1.1.3812024-04-01
CVE-2024-27326 [MEDIUM] CWE-125 CVE-2024-27326: PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2024-27324MEDIUMCVSS 5.5≥ 10.1.1.381, < 10.1.3.3832024-04-01
CVE-2024-27324 [MEDIUM] CWE-125 CVE-2024-27324: PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2024-27329MEDIUMCVSS 5.5v10.1.1.3812024-04-01
CVE-2024-27329 [MEDIUM] CWE-125 CVE-2024-27329: PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
nvd
CVE-2024-27330LOWCVSS 3.3v10.1.1.3812024-04-01
CVE-2024-27330 [LOW] CWE-125 CVE-2024-27330: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. Th
nvd
CVE-2024-27332LOWCVSS 3.3v10.1.1.3812024-04-01
CVE-2024-27332 [LOW] CWE-125 CVE-2024-27332: PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. Th
nvd
CVE-2024-27331LOWCVSS 3.3v10.1.1.3812024-04-01
CVE-2024-27331 [LOW] CWE-125 CVE-2024-27331: PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vu PDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. Th
nvd