Remote Code Execution Vulnerability in Kofax Power PDF Allows Attackers to Execute Arbitrary Code
CVE-2024-5306
What is CVE-2024-5306?
A vulnerability in Kofax Power PDF allows remote attackers to execute arbitrary code by exploiting improper validation during PDF file parsing. This flaw arises due to inadequate checks on user-supplied data, leading to a memory corruption situation. Successful exploitation requires the victim to interact with a malicious webpage or open a compromised PDF file. This poses significant security risks for users of Kofax Power PDF as attackers can execute code within the context of the affected application, potentially leading to unauthorized access and control.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Power PDF 5.0.0.57 (5.0.0.10.0.23307)
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved