9.1
CVSSv3

CVE-2019-12154

Published: 11/06/2019 Updated: 13/06/2019
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

XXE in the XML parser library in RealObjects PDFreactor prior to 10.1.10722 allows malicious users to supply malicious XML content in externally referenced resources, leading to disclosure of local file contents and/or denial of service conditions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

realobjects pdfreactor