Skip to content
Noroxi

aspose records

6 published records for vendor aspose.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
4
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 19

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

6 records
  • An uninitialized memory access vulnerability exists in the way Aspose.PDF 19.2 for C++ handles invalid parent object pointers.

    CriticalCVSS 9.8No exploitEPSS 3%

    aspose · aspose.pdf for c\+\+Sep 18, 2019

  • An exploitable use-after-free vulnerability exists in the way LZW-compressed streams are processed in Aspose.PDF 19.2 for C++.

    CriticalCVSS 9.8No exploitEPSS 2%

    aspose · aspose.pdf for c\+\+Sep 18, 2019

  • CVE-2019-5041
    36Monitor

    An exploitable Stack Based Buffer Overflow vulnerability exists in the EnumMetaInfo function of Aspose Aspose.Words library, version 18.11.0

    HighCVSS 8.8No exploitEPSS 3%

    aspose · aspose.wordsAug 21, 2019

  • CVE-2019-5032
    36Monitor

    An exploitable out-of-bounds read vulnerability exists in the LabelSst record parser of Aspose Aspose.Cells 19.1.0 library.

    HighCVSS 8.8No exploitEPSS 3%

    aspose · aspose.cellsAug 21, 2019

  • CVE-2019-5033
    36Monitor

    An exploitable out-of-bounds read vulnerability exists in the Number record parser of Aspose Aspose.Cells 19.1.0 library.

    HighCVSS 8.8No exploitEPSS 3%

    aspose · aspose.cellsAug 21, 2019

  • CVE-2019-5042
    36Monitor

    An exploitable Use-After-Free vulnerability exists in the way FunctionType 0 PDF elements are processed in Aspose.PDF 19.2 for C++.

    HighCVSS 8.8No exploitEPSS 2%

    aspose · aspose.pdf for c\+\+Sep 18, 2019