Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.802506
Category:Denial of Service
Title:Investintech Products Denial of Service Vulnerabilities
Summary:Investintech products are prone to a denial of service vulnerability.
Description:Summary:
Investintech products are prone to a denial of service vulnerability.

Vulnerability Insight:
The flaws are due to:

- Unspecified errors in Investintech Able2Extract, Able2Doc,
and Able2Doc Professional.

- Not properly restricting write operations in SlimPDF Reader, the arguments
to unspecified function calls and read operations during block data moves.

- Fails to prevent faulting-instruction data from affecting write operations
and faulting-address data from affecting branch selection in SlimPDF Reader.

Vulnerability Impact:
Successful exploitation will allow remote attackers to cause a
denial of service or possibly execute arbitrary code via a crafted PDF document.

Affected Software/OS:
- Able2Extract version 7.0 and prior.

- SlimPDF Reader version 1.0.0.1 and prior.

- Able2Extract PDF Server version 1.0.0 or prior.

- Able2Doc and Able2Doc Professional version 6.0 and prior.

Solution:
Updates are available.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2011-4216
CERT/CC vulnerability note: VU#275036
http://www.kb.cert.org/vuls/id/275036
XForce ISS Database: slimpdf-write-operations-code-exec(71100)
https://exchange.xforce.ibmcloud.com/vulnerabilities/71100
Common Vulnerability Exposure (CVE) ID: CVE-2011-4218
XForce ISS Database: slimpdf-write-code-execution(71098)
https://exchange.xforce.ibmcloud.com/vulnerabilities/71098
Common Vulnerability Exposure (CVE) ID: CVE-2011-4219
XForce ISS Database: slimpdf-branch-code-execution(71097)
https://exchange.xforce.ibmcloud.com/vulnerabilities/71097
Common Vulnerability Exposure (CVE) ID: CVE-2011-4220
Common Vulnerability Exposure (CVE) ID: CVE-2011-4217
Common Vulnerability Exposure (CVE) ID: CVE-2011-4221
XForce ISS Database: able2doc-pdf-code-execution(71096)
https://exchange.xforce.ibmcloud.com/vulnerabilities/71096
Common Vulnerability Exposure (CVE) ID: CVE-2011-4222
XForce ISS Database: able2extract-pdf-code-execution(71095)
https://exchange.xforce.ibmcloud.com/vulnerabilities/71095
Common Vulnerability Exposure (CVE) ID: CVE-2011-4223
XForce ISS Database: absolute-pdf-code-execution(71094)
https://exchange.xforce.ibmcloud.com/vulnerabilities/71094
CopyrightCopyright (C) 2011 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.