CVE-2026-30276
קריטית 9.8
תיאור (מקור, אנגלית)
An arbitrary file overwrite vulnerability in DeftPDF Document Translator v54.0 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 000) נכון ל-26/7/2026
- CWE
- CWE-73
מוצרים מושפעים
deftpdf: document translator
קישורים
- https://github.com/Secsys-FDU/AF_CVEs/issues/22 ExploitThird Party Advisory
- https://deftpdf.com/ Product
- https://secsys.fudan.edu.cn/ Not Applicable