Vulnerabilidades em PDF-XChange

280 resultados
Análise Vexday

Com 280 CVEs catalogadas, o PDF-XChange apresenta um volume considerável de vulnerabilidades históricas, embora o cenário atual de risco operacional seja relativamente contido. A taxa de exploração ativa está abaixo da média geral do catálogo CISA KEV, sem nenhuma entrada confirmada como explorada ativamente, e a ausência de PoCs públicas conhecidas reduz a superfície de ataque imediata. O tipo de falha mais recorrente é CWE-125 (leitura fora dos limites de buffer), padrão comum em aplicações de processamento de documentos que pode facilitar vazamento de informações ou instabilidade controlada. A CVE mais perigosa identificada atualmente, CVE-2022-37351, registra EPSS de 0,0087, indicando baixa probabilidade de exploração no curto prazo, mas equipes responsáveis por ambientes que processam documentos externos devem manter o ciclo de atualização em dia dado o histórico acumulado de vulnerabilidades no produto.

CVE-2023-39494HIGHPDF-XChange Editor OXPS File Parsing Heap-based Buffer Overflow Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-42110LOWPDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42112LOWPDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42107LOWPDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42106LOWPDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42109LOWPDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42113LOWPDF-XChange Editor EMF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2022-41144HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-41151HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-41143HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-41150HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-41147HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-42399HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2023-39504LOWPDF-XChange Editor OXPS File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2022-42372HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-42374HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-42371HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-42395HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-42400HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%CVE-2022-42373HIGHThis vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is reEPSS 0.4%