ZDI-CAN-27788: ZDI-26-122: PDF-XChange Editor TrackerUpdate Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of PDF-XChange Editor. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the TrackerUpdate process. The product loads a library from an unsecured location. An attacker can leverage this vulnerability to escalate privileges and execute code in the context of a target user.
Other sources
This vulnerability allows local attackers to escalate privileges on affected installations of PDF-XChange Editor. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.3. The following CVEs are assigned: CVE-2026-2040.
— ZDI
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-27788?
ZDI-CAN-27788 is classified as a local privilege escalation vulnerability.
How do I fix ZDI-CAN-27788?
To mitigate ZDI-CAN-27788, update PDF-XChange Editor to the latest version provided by Tracker Software.
Who is affected by ZDI-CAN-27788?
ZDI-CAN-27788 affects installations of PDF-XChange Editor that are vulnerable to local privilege escalation.
What type of vulnerability is ZDI-CAN-27788?
ZDI-CAN-27788 is an uncontrolled search path element vulnerability that allows local attackers to escalate privileges.
What must an attacker do to exploit ZDI-CAN-27788?
An attacker must first gain the ability to execute low-privileged code on the affected installation.