Security Advisory

CVE-2020-7374

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-08-12 17:25:17
Last updated 2024-09-17 02:26:23
Assigner rapid7
State PUBLISHED

Description

Documalis Free PDF Editor version 5.7.2.26 and Documalis Free PDF Scanner version 5.7.2.122 do not appropriately validate the contents of JPEG images contained within a PDF. Attackers can exploit this vulnerability to trigger a buffer overflow on the stack and gain remote code execution as the user running the Documalis Free PDF Editor or Documalis Free PDF Scanner software.