cbcvebase.

Pdf-Xchange Editor vulnerabilities

289 known vulnerabilities affecting pdf-xchange/pdf-xchange_editor.

Total CVEs
289
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH166MEDIUM106LOW17

Vulnerabilities

Page 5 of 15
CVE-2022-37358P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37358 [HIGH] CWE-787 CVE-2022-37358: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JPG files. Crafted data in a JPG file can trigger a writ
nvd
CVE-2022-37363P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37363 [HIGH] CWE-125 CVE-2022-37363: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of EMF files. Crafted data in an EMF file can trigger a rea
nvd
CVE-2022-37362P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37362 [HIGH] CWE-787 CVE-2022-37362: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. Crafted data in a PNG file can trigger a writ
nvd
CVE-2022-37364P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37364 [HIGH] CWE-787 CVE-2022-37364: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of EMF files. Crafted data in an EMF file can trigger a wri
nvd
CVE-2022-37372P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37372 [HIGH] CWE-787 CVE-2022-37372: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. Crafted data in a PDF file can trigger a writ
nvd
CVE-2022-37369P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37369 [HIGH] CWE-787 CVE-2022-37369: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. Crafted data in a PDF file can trigger a writ
nvd
CVE-2022-37357P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37357 [HIGH] CWE-787 CVE-2022-37357: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of ICO files. Crafted data in an ICO file can trigger a wri
nvd
CVE-2022-37371P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37371 [HIGH] CWE-787 CVE-2022-37371: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. Crafted data in a PDF file can trigger a writ
nvd
CVE-2022-37367P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37367 [HIGH] CWE-125 CVE-2022-37367: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of AcroForms. Crafted data in an AcroForm can trigger a re
nvd
CVE-2022-37354P3HIGHCVSS 7.8v9.3.361.02023-03-29
CVE-2022-37354 [HIGH] CWE-787 CVE-2022-37354: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of J2K files. Crafted data in a J2K file can trigger a writ
nvd
CVE-2022-42403P3HIGHCVSS 7.8fixed in 9.5.366.0v9.4.363.02023-01-26
CVE-2022-42403 [HIGH] CWE-122 CVE-2022-42403: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. The issue results from the lack of proper val
nvd
CVE-2024-27327P3HIGHCVSS 7.8v10.1.1.3812024-04-01
CVE-2024-27327 [HIGH] CWE-787 CVE-2024-27327: PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The speci
nvd
CVE-2022-42418P3HIGHCVSS 7.8fixed in 9.5.366.0v9.4.363.02023-01-26
CVE-2022-42418 [HIGH] CWE-822 CVE-2022-42418: This vulnerability allows remote attackers to execute arbitrary code on affected installations of PD This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of TIF files. The issue results from the lack of proper val
nvd
CVE-2023-42064P3HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42064 [HIGH] CWE-125 CVE-2023-42064: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specif
nvd
CVE-2023-42051P3HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42051 [HIGH] CWE-787 CVE-2023-42051: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vu PDF-XChange Editor U3D File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The speci
nvd
CVE-2023-42045P3HIGHCVSS 7.8v10.0.1.371v9.5.368.02024-05-03
CVE-2023-42045 [HIGH] CWE-125 CVE-2023-42045: PDF-XChange Editor J2K File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor J2K File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specif
nvd
CVE-2023-42111P3HIGHCVSS 7.8v10.1.0.3802024-05-03
CVE-2023-42111 [HIGH] CWE-125 CVE-2023-42111: PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specif
nvd
CVE-2023-42088P3HIGHCVSS 7.8v10.0.1.3712024-05-03
CVE-2023-42088 [HIGH] CWE-125 CVE-2023-42088: PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor JPG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specif
nvd
CVE-2023-42057P3HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42057 [HIGH] CWE-125 CVE-2023-42057: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specif
nvd
CVE-2023-42061P3HIGHCVSS 7.8v9.5.368.02024-05-03
CVE-2023-42061 [HIGH] CWE-125 CVE-2023-42061: PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vul PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specif
nvd
Pdf-Xchange Editor vulnerabilities | cvebase