Avanquest Software RAD PDF (PDFEscape Online) 3.19.2.2 is vulnerable to Information Leak / Disclosure. The PDFEscape Online tool provides users with a "white out" functionality for redacting images, text, and other graphics from a PDF document. However, this mechanism does not remove underlying text or PDF object specification information from the PDF. As a result, for example, redacted text may be copy-pasted by a PDF reader.
References
Link | Resource |
---|---|
https://arxiv.org/pdf/2206.02285.pdf | Exploit |
https://www.pdfescape.com/open/ | Product |
https://arxiv.org/pdf/2206.02285.pdf | Exploit |
https://www.pdfescape.com/open/ | Product |
Configurations
History
18 Feb 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-213 |
21 Nov 2024, 07:02
Type | Values Removed | Values Added |
---|---|---|
References | () https://arxiv.org/pdf/2206.02285.pdf - Exploit | |
References | () https://www.pdfescape.com/open/ - Product |
10 Apr 2023, 16:55
Type | Values Removed | Values Added |
---|---|---|
First Time |
Avanquest
Avanquest pdfescape |
|
CPE | cpe:2.3:a:avanquest:pdfescape:3.19.2.2:*:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
CWE | NVD-CWE-noinfo | |
References | (MISC) https://arxiv.org/pdf/2206.02285.pdf - Exploit | |
References | (MISC) https://www.pdfescape.com/open/ - Product |
30 Mar 2023, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-03-30 16:15
Updated : 2025-02-18 17:15
NVD link : CVE-2022-30350
Mitre link : CVE-2022-30350
CVE.ORG link : CVE-2022-30350
JSON object : View
Products Affected
avanquest
- pdfescape
CWE