aspose records
6 published records for vendor aspose.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Attack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2019-5067No exploit | An uninitialized memory access vulnerability exists in the way Aspose.PDF 19.2 for C++ handles invalid parent object pointers.aspose · aspose.pdf for c\+\+ · CWE-416 | Critical9.8 | — | 3.4% | Sep 18, 2019 |
40Plan | CVE-2019-5066No exploit | An exploitable use-after-free vulnerability exists in the way LZW-compressed streams are processed in Aspose.PDF 19.2 for C++.aspose · aspose.pdf for c\+\+ · CWE-416 | Critical9.8 | — | 2.4% | Sep 18, 2019 |
36Monitor | CVE-2019-5041No exploit | An exploitable Stack Based Buffer Overflow vulnerability exists in the EnumMetaInfo function of Aspose Aspose.Words library, version 18.11.0aspose · aspose.words · CWE-121 | High8.8 | — | 3.3% | Aug 21, 2019 |
36Monitor | CVE-2019-5032No exploit | An exploitable out-of-bounds read vulnerability exists in the LabelSst record parser of Aspose Aspose.Cells 19.1.0 library.aspose · aspose.cells · CWE-125 | High8.8 | — | 3.1% | Aug 21, 2019 |
36Monitor | CVE-2019-5033No exploit | An exploitable out-of-bounds read vulnerability exists in the Number record parser of Aspose Aspose.Cells 19.1.0 library.aspose · aspose.cells · CWE-125 | High8.8 | — | 3.1% | Aug 21, 2019 |
36Monitor | CVE-2019-5042No exploit | An exploitable Use-After-Free vulnerability exists in the way FunctionType 0 PDF elements are processed in Aspose.PDF 19.2 for C++.aspose · aspose.pdf for c\+\+ · CWE-416 | High8.8 | — | 2.1% | Sep 18, 2019 |
- CVE-2019-506740Plan
An uninitialized memory access vulnerability exists in the way Aspose.PDF 19.2 for C++ handles invalid parent object pointers.
CriticalCVSS 9.8No exploitEPSS 3%aspose · aspose.pdf for c\+\+Sep 18, 2019
- CVE-2019-506640Plan
An exploitable use-after-free vulnerability exists in the way LZW-compressed streams are processed in Aspose.PDF 19.2 for C++.
CriticalCVSS 9.8No exploitEPSS 2%aspose · aspose.pdf for c\+\+Sep 18, 2019
- CVE-2019-504136Monitor
An exploitable Stack Based Buffer Overflow vulnerability exists in the EnumMetaInfo function of Aspose Aspose.Words library, version 18.11.0
HighCVSS 8.8No exploitEPSS 3%aspose · aspose.wordsAug 21, 2019
- CVE-2019-503236Monitor
An exploitable out-of-bounds read vulnerability exists in the LabelSst record parser of Aspose Aspose.Cells 19.1.0 library.
HighCVSS 8.8No exploitEPSS 3%aspose · aspose.cellsAug 21, 2019
- CVE-2019-503336Monitor
An exploitable out-of-bounds read vulnerability exists in the Number record parser of Aspose Aspose.Cells 19.1.0 library.
HighCVSS 8.8No exploitEPSS 3%aspose · aspose.cellsAug 21, 2019
- CVE-2019-504236Monitor
An exploitable Use-After-Free vulnerability exists in the way FunctionType 0 PDF elements are processed in Aspose.PDF 19.2 for C++.
HighCVSS 8.8No exploitEPSS 2%aspose · aspose.pdf for c\+\+Sep 18, 2019