7.8
CVSSv3

CVE-2017-13056

Published: 27/12/2017 Updated: 09/01/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

The launchURL function in PDF-XChange Viewer 2.5 (Build 314.0) might allow remote malicious users to execute arbitrary code via a crafted PDF file.

Vulnerable Product Search on Vulmon Subscribe to Product

tracker-software pdf-xchange viewer 2.5

Exploits

# Exploit Title: PDF-XChange Viewer 25 (Build 3140) Javascript API Remote Code Execution Exploit (Powershell PDF Exploit Creation) # Date: 21-08-2017 # Software Link 32bit: pdf-xchange-viewerituptodowncom/windows # Exploit Author: Daniele Votta # Contact: vottadaniele@gmailcom # Website: wwwlinkedincom/in/vottadaniele/ # CVE: ...