5
CVE-2026-13522
- EPSS 0.29%
- Veröffentlicht 29.06.2026 01:15:07
- Zuletzt bearbeitet 29.06.2026 18:46:31
- CVE-Watchlists
- Unerledigt
Investintech SlimPDFReader PDF File SlimPDFReader.exe TeighaDo+0x25cde0 out-of-bounds
A security flaw has been discovered in Investintech SlimPDFReader up to 2.0.14. Affected by this issue is the function SlimPDFReader!Investintech::PCV::TeighaDo+0x25cde0 of the file SlimPDFReader.exe of the component PDF File Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. This vulnerability only affects products that are no longer supported by the maintainer.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
HerstellerInvestintech
≫
Produkt
SlimPDFReader
Version
2.0.0
Status
affected
Version
2.0.1
Status
affected
Version
2.0.2
Status
affected
Version
2.0.3
Status
affected
Version
2.0.4
Status
affected
Version
2.0.5
Status
affected
Version
2.0.6
Status
affected
Version
2.0.7
Status
affected
Version
2.0.8
Status
affected
Version
2.0.9
Status
affected
Version
2.0.10
Status
affected
Version
2.0.11
Status
affected
Version
2.0.12
Status
affected
Version
2.0.13
Status
affected
Version
2.0.14
Status
affected
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.29% | 0.21 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| cna@vuldb.com | 2.1 | 0 | 0 |
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
|
| cna@vuldb.com | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
|
| cna@vuldb.com | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
https://vuldb.com/vuln/374530
https://vuldb.com/vuln/374530/cti
https://vuldb.com/cve/CVE-2026-13522
https://vuldb.com/submit/839637