An arbitrary file overwrite vulnerability in Deep Thought Industries ACE Scanner PDF Scanner v1.4.5 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
References
| Link | Resource |
|---|---|
| https://deepthought.industries/ | Product |
| https://github.com/Secsys-FDU/AF_CVEs/issues/16 | Exploit Issue Tracking Third Party Advisory |
| https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free | Product |
| https://secsys.fudan.edu.cn/ | Not Applicable |
Configurations
History
17 Jun 2026, 10:32
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Issue Tracking, Third Party Advisory |
02 Apr 2026, 19:37
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:deepthought.industries:ace_scanner:1.4.5:*:*:*:*:android:*:* | |
| References | () https://deepthought.industries/ - Product | |
| References | () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Third Party Advisory, Issue Tracking | |
| References | () https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free - Product | |
| References | () https://secsys.fudan.edu.cn/ - Not Applicable | |
| First Time |
Deepthought.industries
Deepthought.industries ace Scanner |
01 Apr 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.4 |
| CWE | CWE-73 |
01 Apr 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-01 14:16
Updated : 2026-06-17 10:32
NVD link : CVE-2026-30287
Mitre link : CVE-2026-30287
CVE.ORG link : CVE-2026-30287
JSON object : View
Products Affected
deepthought.industries
- ace_scanner
CWE
CWE-73
External Control of File Name or Path
