CVE-2017-13056: Input Validation
The launchURL function in PDF-XChange Viewer 2.5 (Build 314.0) might allow remote attackers to execute arbitrary code via a crafted PDF file.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2017-13056?
CVE-2017-13056 is a vulnerability in PDF-XChange Viewer 2.5 (Build 314.0) that may allow remote attackers to execute arbitrary code via a crafted PDF file.
How severe is CVE-2017-13056?
CVE-2017-13056 has a severity rating of 7.8, which is considered high.
How can remote attackers exploit CVE-2017-13056?
Remote attackers can exploit CVE-2017-13056 by sending a crafted PDF file to the vulnerable PDF-XChange Viewer 2.5 (Build 314.0), which may allow them to execute arbitrary code.
Is there a fix available for CVE-2017-13056?
At the moment, there is no available fix for CVE-2017-13056. It is recommended to update to a newer version of PDF-XChange Viewer if possible.
Are there any known exploits for CVE-2017-13056?
Yes, there is a known exploit for CVE-2017-13056. More information about the exploit can be found at the provided reference link.