nuance records
5 published records for vendor nuance.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-347 Improper Verification of Cryptographic Signature1
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAll records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
40Plan | CVE-2021-37599No exploit | The exporter/Login.aspx login form in the Exporter in Nuance Winscribe Dictation 4.1.0.99 is vulnerable to SQL injection that allows a remotnuance · winscribe dictation · CWE-89 | Critical9.8 | — | 3.1% | Aug 12, 2021 |
39Monitor | CVE-2013-0732No exploit | Heap-based buffer overflow in PDFCore8.dll in Nuance PDF Reader before 8.1 allows remote attackers to execute arbitrary code via crafted fonnuance · pdf reader · CWE-119 | Critical9.3 | — | 5.2% | Mar 27, 2014 |
38Monitor | CVE-2013-0113No exploit | Nuance PDF Reader 7.0 and PDF Viewer Plus 7.1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruptinuance · pdf reader · CWE-119 | Critical9.3 | — | 3.2% | Feb 24, 2013 |
27Monitor | CVE-2010-5209No exploit | Multiple untrusted search path vulnerabilities in Nuance PDF Reader 6.0 allow local users to gain privileges via a Trojan horse (1) dwmapi.dnuance · pdf reader | Medium6.9 | — | 0.3% | Sep 6, 2012 |
21Monitor | CVE-2018-18688No exploit | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signatcode-industry · master pdf editor · CWE-347 | Medium5.3 | — | 1.1% | Jan 7, 2021 |
- CVE-2021-3759940Plan
The exporter/Login.aspx login form in the Exporter in Nuance Winscribe Dictation 4.1.0.99 is vulnerable to SQL injection that allows a remot
CriticalCVSS 9.8No exploitEPSS 3%nuance · winscribe dictationAug 12, 2021
- CVE-2013-073239Monitor
Heap-based buffer overflow in PDFCore8.dll in Nuance PDF Reader before 8.1 allows remote attackers to execute arbitrary code via crafted fon
CriticalCVSS 9.3No exploitEPSS 5%nuance · pdf readerMar 27, 2014
- CVE-2013-011338Monitor
Nuance PDF Reader 7.0 and PDF Viewer Plus 7.1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corrupti
CriticalCVSS 9.3No exploitEPSS 3%nuance · pdf readerFeb 24, 2013
- CVE-2010-520927Monitor
Multiple untrusted search path vulnerabilities in Nuance PDF Reader 6.0 allow local users to gain privileges via a Trojan horse (1) dwmapi.d
MediumCVSS 6.9No exploitEPSS 0%nuance · pdf readerSep 6, 2012
- CVE-2018-1868821Monitor
The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signat
MediumCVSS 5.3No exploitEPSS 1%code-industry · master pdf editorJan 7, 2021