An arbitrary file overwrite vulnerability in Deep Thought Industries ACE Scanner PDF Scanner v1.4.5 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
References
| Link | Resource |
|---|---|
| https://deepthought.industries/ | Product |
| https://github.com/Secsys-FDU/AF_CVEs/issues/16 | Exploit Third Party Advisory Issue Tracking |
| https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free | Product |
| https://secsys.fudan.edu.cn/ | Not Applicable |
Configurations
History
02 Apr 2026, 19:37
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:deepthought.industries:ace_scanner:1.4.5:*:*:*:*:android:*:* | |
| First Time |
Deepthought.industries
Deepthought.industries ace Scanner |
|
| References | () https://deepthought.industries/ - Product | |
| References | () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Third Party Advisory, Issue Tracking | |
| References | () https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free - Product | |
| References | () https://secsys.fudan.edu.cn/ - Not Applicable |
01 Apr 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.4 |
| CWE | CWE-73 |
01 Apr 2026, 14:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-01 14:16
Updated : 2026-04-02 19:37
NVD link : CVE-2026-30287
Mitre link : CVE-2026-30287
CVE.ORG link : CVE-2026-30287
JSON object : View
Products Affected
deepthought.industries
- ace_scanner
CWE
CWE-73
External Control of File Name or Path
