tracker-software records
6 published records for vendor tracker-software.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-20 Improper Input Validation1
- CWE-347 Improper Verification of Cryptographic Signature1
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAll records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2012-5324Proof of concept | Multiple buffer overflows in the Pdf Printer Preferences ActiveX Control in pdfxctrl.dll in Tracker Software PDF-XChange 3.60.0128 allow remtracker-software · pdf-xchange · CWE-119 | Critical9.3 | — | 6.3% | Oct 8, 2012 |
39Monitor | CVE-2013-0729No exploit | Heap-based buffer overflow in Tracker Software PDF-XChange before 2.5.208 allows remote attackers to execute arbitrary code via a crafted Detracker-software · pdf-xchange viewer · CWE-119 | Critical9.3 | — | 6.3% | Apr 2, 2014 |
33Monitor | CVE-2017-13056Proof of concept | The launchURL function in PDF-XChange Viewer 2.5 (Build 314.0) might allow remote attackers to execute arbitrary code via a crafted PDF filetracker-software · pdf-xchange viewer · CWE-20 | High7.8 | — | 5.6% | Dec 27, 2017 |
32Monitor | CVE-2018-6462No exploit | Tracker PDF-XChange Viewer and Viewer AX SDK before 2.5.322.8 mishandle conversion from YCC to RGB colour spaces by calculating on the basistracker-software · pdf-xchange viewer · CWE-787 | High7.8 | — | 2.5% | Jan 31, 2018 |
27Monitor | CVE-2010-5245No exploit | Untrusted search path vulnerability in PDF-XChange Viewer 2.0 Build 54.0 allows local users to gain privileges via a Trojan horse wintab32.dtracker-software · pdf-xchange viewer | Medium6.9 | — | 0.4% | Sep 7, 2012 |
22Monitor | CVE-2018-18689No exploit | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signatavanquest · expert pdf ultimate · CWE-347 | Medium5.3 | — | 3.7% | Jan 7, 2021 |
- CVE-2012-532439Monitor
Multiple buffer overflows in the Pdf Printer Preferences ActiveX Control in pdfxctrl.dll in Tracker Software PDF-XChange 3.60.0128 allow rem
CriticalCVSS 9.3Proof of conceptEPSS 6%tracker-software · pdf-xchangeOct 8, 2012
- CVE-2013-072939Monitor
Heap-based buffer overflow in Tracker Software PDF-XChange before 2.5.208 allows remote attackers to execute arbitrary code via a crafted De
CriticalCVSS 9.3No exploitEPSS 6%tracker-software · pdf-xchange viewerApr 2, 2014
- CVE-2017-1305633Monitor
The launchURL function in PDF-XChange Viewer 2.5 (Build 314.0) might allow remote attackers to execute arbitrary code via a crafted PDF file
HighCVSS 7.8Proof of conceptEPSS 6%tracker-software · pdf-xchange viewerDec 27, 2017
- CVE-2018-646232Monitor
Tracker PDF-XChange Viewer and Viewer AX SDK before 2.5.322.8 mishandle conversion from YCC to RGB colour spaces by calculating on the basis
HighCVSS 7.8No exploitEPSS 2%tracker-software · pdf-xchange viewerJan 31, 2018
- CVE-2010-524527Monitor
Untrusted search path vulnerability in PDF-XChange Viewer 2.0 Build 54.0 allows local users to gain privileges via a Trojan horse wintab32.d
MediumCVSS 6.9No exploitEPSS 0%tracker-software · pdf-xchange viewerSep 7, 2012
- CVE-2018-1868922Monitor
The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signat
MediumCVSS 5.3No exploitEPSS 4%avanquest · expert pdf ultimateJan 7, 2021