Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-24308


A potential memory vulnerability due to insufficient input validation in PDFXEditCore.x64.dll in PDF-XChange Editor version 9.3 by Tracker Software may allow attackers to execute code when a user opens a crafted PDF file. The issue occurs when handling a large number of objects in a PDF file.


Published

2023-03-28T21:15:10.710

Last Modified

2025-02-19T16:15:36.167

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Primary
    CWE-755
  • Type: Secondary
    CWE-755

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application pdf-xchange pdf-xchange_editor 9.3 Yes

References