Vulnerabilities > Xpdf > High

DATE CVE VULNERABILITY TITLE RISK
2003-01-02 CVE-2002-1384 Integer Overflow vulnerability in Xpdf/CUPS pdftops
Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.
local
low complexity
easy-software-products xpdf
7.2
2000-10-20 CVE-2000-0728 Unspecified vulnerability in Xpdf 0.90
xpdf PDF viewer client earlier than 0.91 allows local users to overwrite arbitrary files via a symlink attack.
local
low complexity
xpdf
7.2
2000-10-20 CVE-2000-0727 Unspecified vulnerability in Xpdf 0.90
xpdf PDF viewer client earlier than 0.91 does not properly launch a web browser for embedded URL's, which allows an attacker to execute arbitrary commands via a URL that contains shell metacharacters.
network
high complexity
xpdf
7.6