Lucene search

K
cveMitreCVE-2023-24295
HistoryMar 23, 2023 - 10:15 p.m.

CVE-2023-24295

2023-03-2322:15:12
CWE-787
mitre
web.nvd.nist.gov
18
cve-2023-24295
stack overflow
flexipdf
arbitrary code execution
crafted pdf
nvd

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

27.2%

A stack overfow in SoftMaker Software GmbH FlexiPDF v3.0.3.0 allows attackers to execute arbitrary code after opening a crafted PDF file.

Affected configurations

Nvd
Node
softmakerflexipdfMatch2022revision3.0.3
VendorProductVersionCPE
softmakerflexipdf2022cpe:2.3:a:softmaker:flexipdf:2022:revision3.0.3:*:*:*:*:*:*

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

27.2%

Related for CVE-2023-24295