Vulnerabilities > CVE-2023-24308 - Improper Handling of Exceptional Conditions vulnerability in Pdf-Xchange Editor 9.3

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
pdf-xchange
CWE-755

Summary

A potential memory vulnerability due to insufficient input validation in PDFXEditCore.x64.dll in PDF-XChange Editor version 9.3 by Tracker Software may allow attackers to execute code when a user opens a crafted PDF file. The issue occurs when handling a large number of objects in a PDF file.

Vulnerable Configurations

Part Description Count
Application
Pdf-Xchange
1