Перейти к содержимому
Noroxi

Записи gonitro

36 опубликованных записей вендора gonitro.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
1 · 2,8 %
Pre-auth RCE
2
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 17
  2. 19
  3. 20
  4. 21
  5. 24
  6. 26

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

36 записей
  • CVE-2020-6146
    58В плане

    An exploitable code execution vulnerability exists in the rendering functionality of Nitro Pro 13.13.2.242 and 13.16.2.300.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 76 %

    gonitro · nitro pro16 сент. 2020 г.

  • CVE-2020-6113
    51В плане

    An exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when updating

    ВысокаяCVSS 7,8Эксплойта нетEPSS 65 %

    gonitro · nitro pro17 сент. 2020 г.

  • CVE-2020-6074
    47В плане

    An exploitable code execution vulnerability exists in the PDF parser of Nitro Pro 13.9.1.155.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 41 %

    gonitro · nitro pro18 мая 2020 г.

  • CVE-2017-7442
    47В плане

    Nitro Pro 11.0.3.173 allows remote attackers to execute arbitrary code via saveAs and launchURL calls with directory traversal sequences.

    ВысокаяCVSS 8,8Готовый эксплойтEPSS 41 %

    gonitro · nitro pro3 авг. 2017 г.

  • CVE-2020-6092
    44В плане

    An exploitable code execution vulnerability exists in the way Nitro Pro 13.9.1.155 parses Pattern objects.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 42 %

    gonitro · nitro pro18 мая 2020 г.

  • CVE-2020-6116
    40В плане

    An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 28 %

    gonitro · nitro pro17 сент. 2020 г.

  • CVE-2020-6112
    36Наблюдать

    An exploitable code execution vulnerability exists in the JPEG2000 Stripe Decoding functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2

    ВысокаяCVSS 7,8Эксплойта нетEPSS 17 %

    gonitro · nitro pro17 сент. 2020 г.

  • CVE-2021-21798
    36Наблюдать

    An exploitable return of stack variable address vulnerability exists in the JavaScript implementation of Nitro Pro PDF.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 16 %

    gonitro · nitro pro15 сент. 2021 г.

  • CVE-2021-21796
    36Наблюдать

    An exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 16 %

    gonitro · nitro pro18 окт. 2021 г.

  • CVE-2021-21797
    36Наблюдать

    An exploitable double-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 15 %

    gonitro · nitro pro18 окт. 2021 г.

  • CVE-2020-10223
    33Наблюдать

    npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to JBIG2Decode CNxJBIG2DecodeStream Heap Corruption at npdf!CAPPDAnnotHandlerUtils::c

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    gonitro · nitro pro8 мар. 2020 г.

  • CVE-2020-10222
    33Наблюдать

    npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to Heap Corruption at npdf!nitro::get_property+2381 via a crafted PDF document.

    ВысокаяCVSS 8,1Эксплойта нетEPSS 2 %

    gonitro · nitro pro8 мар. 2020 г.

  • CVE-2025-69627
    33Наблюдать

    Nitro PDF Pro for Windows 14.41.1.4 contains a heap use-after-free vulnerability in the implementation of the JavaScript method this.mailDoc

    ВысокаяCVSS 8,4Эксплойта нетEPSS 0 %

    gonitro · nitro pdf pro13 апр. 2026 г.

  • CVE-2020-6115
    32Наблюдать

    An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %

    gonitro · nitro pro17 сент. 2020 г.

  • CVE-2019-5050
    32Наблюдать

    A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %

    gonitro · nitropdf9 окт. 2019 г.

  • CVE-2019-5045
    32Наблюдать

    A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.52

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    gonitro · nitropdf9 окт. 2019 г.

  • CVE-2019-5048
    32Наблюдать

    A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    gonitro · nitropdf9 окт. 2019 г.

  • CVE-2019-5046
    32Наблюдать

    A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.52

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    gonitro · nitropdf9 окт. 2019 г.

  • CVE-2016-8711
    32Наблюдать

    A potential remote code execution vulnerability exists in the PDF parsing functionality of Nitro Pro 10.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    gonitro · nitro pdf pro10 февр. 2017 г.

  • CVE-2019-5047
    31Наблюдать

    An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    gonitro · nitropdf9 окт. 2019 г.

  • CVE-2019-5053
    31Наблюдать

    An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    gonitro · nitropdf9 окт. 2019 г.

  • CVE-2016-8709
    31Наблюдать

    A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    gonitro · nitro pdf pro10 февр. 2017 г.

  • CVE-2016-8713
    31Наблюдать

    A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10.5.9.9.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    gonitro · nitro pdf pro10 февр. 2017 г.

  • CVE-2019-18958
    31Наблюдать

    Nitro Pro before 13.2 creates a debug.log file in the directory where a .pdf file is located, if the .pdf document was produced by an OCR op

    ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %

    gonitro · nitro pro21 нояб. 2019 г.

  • CVE-2013-2773
    31Наблюдать

    Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    gonitro · nitropdf14 янв. 2020 г.