Vulnerabilidades en PDF-XChange

280 resultados
Análisis Vexday

Com 280 CVEs catalogadas, o PDF-XChange apresenta um volume considerável de vulnerabilidades históricas, embora o cenário atual de risco operacional seja relativamente contido. A taxa de exploração ativa está abaixo da média geral do catálogo CISA KEV, sem nenhuma entrada confirmada como explorada ativamente, e a ausência de PoCs públicas conhecidas reduz a superfície de ataque imediata. O tipo de falha mais recorrente é CWE-125 (leitura fora dos limites de buffer), padrão comum em aplicações de processamento de documentos que pode facilitar vazamento de informações ou instabilidade controlada. A CVE mais perigosa identificada atualmente, CVE-2022-37351, registra EPSS de 0,0087, indicando baixa probabilidade de exploração no curto prazo, mas equipes responsáveis por ambientes que processam documentos externos devem manter o ciclo de atualização em dia dado o histórico acumulado de vulnerabilidades no produto.

CVE-2022-42401LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interactiEPSS 0.4%CVE-2022-42369LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interactiEPSS 0.4%CVE-2022-41153LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interactiEPSS 0.4%CVE-2024-8824LOWPDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2023-40473LOWPDF-XChange Editor Doc Object Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2024-8823LOWPDF-XChange Editor JB2 File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2024-8841LOWPDF-XChange Editor PDF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2024-8822LOWPDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2023-39487LOWPDF-XChange Editor util Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2023-39484LOWPDF-XChange Editor PDF File Parsing Uninitialized Variable Information Disclosure VulnerabilityEPSS 0.3%CVE-2024-8846LOWPDF-XChange Editor TIF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.3%CVE-2022-42383LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interactiEPSS 0.3%CVE-2022-42409LOWThis vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interactiEPSS 0.3%CVE-2023-39486HIGHPDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-39502HIGHPDF-XChange Editor OXPS File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-39497HIGHPDF-XChange Editor JPG File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-39501HIGHPDF-XChange Editor OXPS File Parsing Untrusted Pointer Dereference Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-39500HIGHPDF-XChange Editor JPG File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-40472HIGHPDF-XChange Editor JavaScript String Untrusted Pointer Dereference Remote Code Execution VulnerabilityEPSS 0.3%CVE-2023-39498HIGHPDF-XChange Editor JPG File Parsing Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.3%