gonitro kayıtları
gonitro üreticisine ait 36 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %2,8
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-416 Use After Free6
- CWE-122 Heap-based Buffer Overflow5
- CWE-787 Out-of-bounds Write3
- CWE-476 NULL Pointer Dereference3
- CWE-190 Integer Overflow or Wraparound2
- CWE-347 Improper Verification of Cryptographic Signature2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
36 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
58Planlayın | CVE-2020-6146İstismar yok | An exploitable code execution vulnerability exists in the rendering functionality of Nitro Pro 13.13.2.242 and 13.16.2.300.gonitro · nitro pro · CWE-122 | Yüksek8,8 | — | %76,1 | 16 Eyl 2020 |
51Planlayın | CVE-2020-6113İstismar yok | An exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when updatinggonitro · nitro pro · CWE-190 | Yüksek7,8 | — | %65,0 | 17 Eyl 2020 |
47Planlayın | CVE-2020-6074İstismar yok | An exploitable code execution vulnerability exists in the PDF parser of Nitro Pro 13.9.1.155.gonitro · nitro pro · CWE-416 | Yüksek8,8 | — | %40,9 | 18 May 2020 |
47Planlayın | CVE-2017-7442Silahlaştırılmış | Nitro Pro 11.0.3.173 allows remote attackers to execute arbitrary code via saveAs and launchURL calls with directory traversal sequences.gonitro · nitro pro · CWE-22 | Yüksek8,8 | — | %40,7 | 3 Ağu 2017 |
44Planlayın | CVE-2020-6092İstismar yok | An exploitable code execution vulnerability exists in the way Nitro Pro 13.9.1.155 parses Pattern objects.gonitro · nitro pro · CWE-190 | Yüksek7,8 | — | %42,3 | 18 May 2020 |
40Planlayın | CVE-2020-6116İstismar yok | An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.gonitro · nitro pro · CWE-680 | Yüksek7,8 | — | %28,4 | 17 Eyl 2020 |
36İzleyin | CVE-2020-6112İstismar yok | An exploitable code execution vulnerability exists in the JPEG2000 Stripe Decoding functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2gonitro · nitro pro · CWE-823 | Yüksek7,8 | — | %17,1 | 17 Eyl 2020 |
36İzleyin | CVE-2021-21798İstismar yok | An exploitable return of stack variable address vulnerability exists in the JavaScript implementation of Nitro Pro PDF.gonitro · nitro pro · CWE-562 | Yüksek7,8 | — | %16,0 | 15 Eyl 2021 |
36İzleyin | CVE-2021-21796İstismar yok | An exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF.gonitro · nitro pro · CWE-416 | Yüksek7,8 | — | %15,8 | 18 Eki 2021 |
36İzleyin | CVE-2021-21797İstismar yok | An exploitable double-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF.gonitro · nitro pro · CWE-415 | Yüksek7,8 | — | %15,0 | 18 Eki 2021 |
33İzleyin | CVE-2020-10223İstismar yok | npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to JBIG2Decode CNxJBIG2DecodeStream Heap Corruption at npdf!CAPPDAnnotHandlerUtils::cgonitro · nitro pro · CWE-787 | Yüksek8,1 | — | %2,5 | 8 Mar 2020 |
33İzleyin | CVE-2020-10222İstismar yok | npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to Heap Corruption at npdf!nitro::get_property+2381 via a crafted PDF document.gonitro · nitro pro | Yüksek8,1 | — | %2,5 | 8 Mar 2020 |
33İzleyin | CVE-2025-69627İstismar yok | Nitro PDF Pro for Windows 14.41.1.4 contains a heap use-after-free vulnerability in the implementation of the JavaScript method this.mailDocgonitro · nitro pdf pro · CWE-416 | Yüksek8,4 | — | %0,2 | 13 Nis 2026 |
32İzleyin | CVE-2020-6115İstismar yok | An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.gonitro · nitro pro · CWE-416 | Yüksek7,8 | — | %2,7 | 17 Eyl 2020 |
32İzleyin | CVE-2019-5050İstismar yok | A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522.gonitro · nitropdf · CWE-122 | Yüksek7,8 | — | %2,6 | 9 Eki 2019 |
32İzleyin | CVE-2019-5045İstismar yok | A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.52gonitro · nitropdf · CWE-122 | Yüksek7,8 | — | %2,3 | 9 Eki 2019 |
32İzleyin | CVE-2019-5048İstismar yok | A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522.gonitro · nitropdf · CWE-122 | Yüksek7,8 | — | %2,3 | 9 Eki 2019 |
32İzleyin | CVE-2019-5046İstismar yok | A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.52gonitro · nitropdf · CWE-122 | Yüksek7,8 | — | %2,3 | 9 Eki 2019 |
32İzleyin | CVE-2016-8711İstismar yok | A potential remote code execution vulnerability exists in the PDF parsing functionality of Nitro Pro 10.gonitro · nitro pdf pro | Yüksek7,8 | — | %2,0 | 10 Şub 2017 |
31İzleyin | CVE-2019-5047İstismar yok | An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF.gonitro · nitropdf · CWE-416 | Yüksek7,8 | — | %1,3 | 9 Eki 2019 |
31İzleyin | CVE-2019-5053İstismar yok | An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF.gonitro · nitropdf · CWE-416 | Yüksek7,8 | — | %1,3 | 9 Eki 2019 |
31İzleyin | CVE-2016-8709İstismar yok | A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10.gonitro · nitro pdf pro · CWE-787 | Yüksek7,8 | — | %1,3 | 10 Şub 2017 |
31İzleyin | CVE-2016-8713İstismar yok | A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10.5.9.9.gonitro · nitro pdf pro · CWE-787 | Yüksek7,8 | — | %1,1 | 10 Şub 2017 |
31İzleyin | CVE-2019-18958İstismar yok | Nitro Pro before 13.2 creates a debug.log file in the directory where a .pdf file is located, if the .pdf document was produced by an OCR opgonitro · nitro pro · CWE-732 | Yüksek7,8 | — | %0,5 | 21 Kas 2019 |
31İzleyin | CVE-2013-2773İstismar yok | Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Executiongonitro · nitropdf · CWE-426 | Yüksek7,8 | — | %0,4 | 14 Oca 2020 |
- CVE-2020-614658Planlayın
An exploitable code execution vulnerability exists in the rendering functionality of Nitro Pro 13.13.2.242 and 13.16.2.300.
YüksekCVSS 8,8İstismar yokEPSS %76gonitro · nitro pro16 Eyl 2020
- CVE-2020-611351Planlayın
An exploitable vulnerability exists in the object stream parsing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242 when updating
YüksekCVSS 7,8İstismar yokEPSS %65gonitro · nitro pro17 Eyl 2020
- CVE-2020-607447Planlayın
An exploitable code execution vulnerability exists in the PDF parser of Nitro Pro 13.9.1.155.
YüksekCVSS 8,8İstismar yokEPSS %41gonitro · nitro pro18 May 2020
- CVE-2017-744247Planlayın
Nitro Pro 11.0.3.173 allows remote attackers to execute arbitrary code via saveAs and launchURL calls with directory traversal sequences.
YüksekCVSS 8,8SilahlaştırılmışEPSS %41gonitro · nitro pro3 Ağu 2017
- CVE-2020-609244Planlayın
An exploitable code execution vulnerability exists in the way Nitro Pro 13.9.1.155 parses Pattern objects.
YüksekCVSS 7,8İstismar yokEPSS %42gonitro · nitro pro18 May 2020
- CVE-2020-611640Planlayın
An arbitrary code execution vulnerability exists in the rendering functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.
YüksekCVSS 7,8İstismar yokEPSS %28gonitro · nitro pro17 Eyl 2020
- CVE-2020-611236İzleyin
An exploitable code execution vulnerability exists in the JPEG2000 Stripe Decoding functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2
YüksekCVSS 7,8İstismar yokEPSS %17gonitro · nitro pro17 Eyl 2020
- CVE-2021-2179836İzleyin
An exploitable return of stack variable address vulnerability exists in the JavaScript implementation of Nitro Pro PDF.
YüksekCVSS 7,8İstismar yokEPSS %16gonitro · nitro pro15 Eyl 2021
- CVE-2021-2179636İzleyin
An exploitable use-after-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF.
YüksekCVSS 7,8İstismar yokEPSS %16gonitro · nitro pro18 Eki 2021
- CVE-2021-2179736İzleyin
An exploitable double-free vulnerability exists in the JavaScript implementation of Nitro Pro PDF.
YüksekCVSS 7,8İstismar yokEPSS %15gonitro · nitro pro18 Eki 2021
- CVE-2020-1022333İzleyin
npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to JBIG2Decode CNxJBIG2DecodeStream Heap Corruption at npdf!CAPPDAnnotHandlerUtils::c
YüksekCVSS 8,1İstismar yokEPSS %2gonitro · nitro pro8 Mar 2020
- CVE-2020-1022233İzleyin
npdf.dll in Nitro Pro before 13.13.2.242 is vulnerable to Heap Corruption at npdf!nitro::get_property+2381 via a crafted PDF document.
YüksekCVSS 8,1İstismar yokEPSS %2gonitro · nitro pro8 Mar 2020
- CVE-2025-6962733İzleyin
Nitro PDF Pro for Windows 14.41.1.4 contains a heap use-after-free vulnerability in the implementation of the JavaScript method this.mailDoc
YüksekCVSS 8,4İstismar yokEPSS %0gonitro · nitro pdf pro13 Nis 2026
- CVE-2020-611532İzleyin
An exploitable vulnerability exists in the cross-reference table repairing functionality of Nitro Software, Inc.’s Nitro Pro 13.13.2.242.
YüksekCVSS 7,8İstismar yokEPSS %3gonitro · nitro pro17 Eyl 2020
- CVE-2019-505032İzleyin
A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522.
YüksekCVSS 7,8İstismar yokEPSS %3gonitro · nitropdf9 Eki 2019
- CVE-2019-504532İzleyin
A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.52
YüksekCVSS 7,8İstismar yokEPSS %2gonitro · nitropdf9 Eki 2019
- CVE-2019-504832İzleyin
A specifically crafted PDF file can lead to a heap corruption when opened in NitroPDF 12.12.1.522.
YüksekCVSS 7,8İstismar yokEPSS %2gonitro · nitropdf9 Eki 2019
- CVE-2019-504632İzleyin
A specifically crafted jpeg2000 file embedded in a PDF file can lead to a heap corruption when opening a PDF document in NitroPDF 12.12.1.52
YüksekCVSS 7,8İstismar yokEPSS %2gonitro · nitropdf9 Eki 2019
- CVE-2016-871132İzleyin
A potential remote code execution vulnerability exists in the PDF parsing functionality of Nitro Pro 10.
YüksekCVSS 7,8İstismar yokEPSS %2gonitro · nitro pdf pro10 Şub 2017
- CVE-2019-504731İzleyin
An exploitable Use After Free vulnerability exists in the CharProcs parsing functionality of NitroPDF.
YüksekCVSS 7,8İstismar yokEPSS %1gonitro · nitropdf9 Eki 2019
- CVE-2019-505331İzleyin
An exploitable use-after-free vulnerability exists in the Length parsing function of NitroPDF.
YüksekCVSS 7,8İstismar yokEPSS %1gonitro · nitropdf9 Eki 2019
- CVE-2016-870931İzleyin
A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10.
YüksekCVSS 7,8İstismar yokEPSS %1gonitro · nitro pdf pro10 Şub 2017
- CVE-2016-871331İzleyin
A remote out of bound write / memory corruption vulnerability exists in the PDF parsing functionality of Nitro Pro 10.5.9.9.
YüksekCVSS 7,8İstismar yokEPSS %1gonitro · nitro pdf pro10 Şub 2017
- CVE-2019-1895831İzleyin
Nitro Pro before 13.2 creates a debug.log file in the directory where a .pdf file is located, if the .pdf document was produced by an OCR op
YüksekCVSS 7,8İstismar yokEPSS %1gonitro · nitro pro21 Kas 2019
- CVE-2013-277331İzleyin
Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution
YüksekCVSS 7,8İstismar yokEPSS %0gonitro · nitropdf14 Oca 2020