CVE-2026-30287

An arbitrary file overwrite vulnerability in Deep Thought Industries ACE Scanner PDF Scanner v1.4.5 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
Configurations

Configuration 1 (hide)

cpe:2.3:a:deepthought.industries:ace_scanner:1.4.5:*:*:*:*:android:*:*

History

02 Apr 2026, 19:37

Type Values Removed Values Added
CPE cpe:2.3:a:deepthought.industries:ace_scanner:1.4.5:*:*:*:*:android:*:*
First Time Deepthought.industries
Deepthought.industries ace Scanner
References () https://deepthought.industries/ - () https://deepthought.industries/ - Product
References () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - () https://github.com/Secsys-FDU/AF_CVEs/issues/16 - Exploit, Third Party Advisory, Issue Tracking
References () https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free - () https://play.google.com/store/apps/details?id=pdfscanner.scan.pdf.scanner.free - Product
References () https://secsys.fudan.edu.cn/ - () https://secsys.fudan.edu.cn/ - Not Applicable

01 Apr 2026, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.4
CWE CWE-73

01 Apr 2026, 14:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-01 14:16

Updated : 2026-04-02 19:37


NVD link : CVE-2026-30287

Mitre link : CVE-2026-30287

CVE.ORG link : CVE-2026-30287


JSON object : View

Products Affected

deepthought.industries

  • ace_scanner
CWE
CWE-73

External Control of File Name or Path