vendor:
Nitro Pro
by:
John Cobb
7,5
CVSS
HIGH
Denial of Service
N/A
CWE
Product Name: Nitro Pro
Affected Version From: 8.0.3.1
Affected Version To: 8.0.3.1
Patch Exists: NO
Related CWE: None
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Win7 64bit
2012
Nitro Pro 8.0.3.1 – DoS
When the Object Index exceeds 10 characters the app crashes. User mode write access violations that are not near NULL are exploitable. App crashes when just browsing the folder which contains the PDF.
Mitigation:
N/A