CVE-2026-30287

An arbitrary file overwrite vulnerability in Deep Thought Industries ACE Scanner PDF Scanner v1.4.5 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:deepthought.industries:ace_scanner:1.4.5:*:*:*:*:android:*:*

History

17 Jun 2026, 10:32

Type Values Removed Values Added
References () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Third Party Advisory, Issue Tracking () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Issue Tracking, Third Party Advisory

02 Apr 2026, 19:37

Type Values Removed Values Added
References () https://deepthought.industries/ - () https://deepthought.industries/ - Product
References () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Third Party Advisory, Issue Tracking
References () https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free - () https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free - Product
References () https://secsys.fudan.edu.cn/ - () https://secsys.fudan.edu.cn/ - Not Applicable
CPE cpe:2.3:a:deepthought.industries:ace_scanner:1.4.5:*:*:*:*:android:*:*
First Time Deepthought.industries
Deepthought.industries ace Scanner

01 Apr 2026, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.4
CWE CWE-73

01 Apr 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-01 14:16

Updated : 2026-06-17 10:32


NVD link : CVE-2026-30287

Mitre link : CVE-2026-30287

CVE.ORG link : CVE-2026-30287


JSON object : View

Products Affected

deepthought.industries

  • ace_scanner
CWE
CWE-73

External Control of File Name or Path