Latest CVE Feed
-
7.8
HIGHCVE-2023-32159
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-32158
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27348
PDF-XChange Editor TIF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vuln... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27345
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27341
PDF-XChange Editor TIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27342
PDF-XChange Editor EMF File Parsing Untrusted Pointer Dereference Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to ex... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27343
PDF-XChange Editor EMF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27340
PDF-XChange Editor PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27339
PDF-XChange Editor PNG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-27344
PDF-XChange Editor PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
5.5
MEDIUMCVE-2023-39487
PDF-XChange Editor util Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vul... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-39488
PDF-XChange Editor TIF File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vuln... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-39489
PDF-XChange Editor TIF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
5.5
MEDIUMCVE-2023-40473
PDF-XChange Editor Doc Object Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit th... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
7.8
HIGHCVE-2023-39486
PDF-XChange Editor JP2 File Parsing Memory Corruption Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this v... Read more
- Published: May. 03, 2024
- Modified: May. 20, 2025
-
6.1
MEDIUMCVE-2024-7211
The 1E Platform's component utilized the third-party Duende Identity Server, which suffered from an open redirect vulnerability, permitting an attacker to control the redirection path of end users. Note: 1E Platform's component utilizing the third-party ... Read more
Affected Products : platform- Published: Aug. 01, 2024
- Modified: May. 20, 2025
-
9.9
CRITICALCVE-2023-5964
The 1E-Exchange-DisplayMessageinstruction that is part of the End-User Interaction product pack available on the 1E Exchange does not properly validate the Caption or Message parameters, which allows for a specially crafted input to perform arbitrary code... Read more
Affected Products : platform- EPSS Score: %0.18
- Published: Nov. 06, 2023
- Modified: May. 20, 2025
-
9.9
CRITICALCVE-2023-45162
Affected 1E Platform versions have a Blind SQL Injection vulnerability that can lead to arbitrary code execution. Application of the relevant hotfix remediates this issue. for v8.1.2 apply hotfix Q23166 for v8.4.1 apply hotfix Q23164 for v9.0.1 apply h... Read more
Affected Products : platform- EPSS Score: %0.10
- Published: Oct. 13, 2023
- Modified: May. 20, 2025
-
8.8
HIGHCVE-2023-45160
In the affected version of the 1E Client, an ordinary user could subvert downloaded instruction resource files, e.g., to substitute a harmful script. by replacing a resource script file created by an instruction at run time with a malicious script. The 1E... Read more
Affected Products : client- EPSS Score: %0.23
- Published: Oct. 05, 2023
- Modified: May. 20, 2025
-
8.4
HIGHCVE-2023-45159
1E Client installer can perform arbitrary file deletion on protected files. A non-privileged user could provide a symbolic link or Windows junction to point to a protected directory in the installer that the 1E Client would then clear on service startu... Read more
Affected Products : client- EPSS Score: %0.15
- Published: Oct. 05, 2023
- Modified: May. 20, 2025