Out-of-Bounds Read Vulnerability in PDF-XChange Editor by PDF-XChange Co. Ltd
CVE-2025-47152

6.5MEDIUM

Key Information:

Vendor
CVE Published:
5 August 2025

What is CVE-2025-47152?

An out-of-bounds read vulnerability exists within the EMF functionality of PDF-XChange Editor. When exploited through a specially crafted EMF file, this flaw allows attackers to perform unauthorized read operations, potentially leading to the exposure of sensitive data. It is crucial for users to be aware of this security issue and apply any available updates to mitigate risks associated with this vulnerability.

Affected Version(s)

PDF-XChange Editor 10.6.0.396

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Discovered by KPC of Cisco Talos.
.