Out-Of-Bounds Read Vulnerability in PDF-XChange Editor by Tracker Software
CVE-2025-6662

3.3LOW

Key Information:

Vendor
CVE Published:
25 June 2025

What is CVE-2025-6662?

A vulnerability exists in the PDF-XChange Editor that risks disclosing sensitive information due to improper validation of user-supplied PRC file data. Attackers are able to exploit this flaw via malicious webpages or files, which can lead to reading beyond the allocated memory. When successfully exploited, this could potentially allow attackers to execute arbitrary code in the context of the affected process, heightening security risks for users. Regular updates and security practices are recommended to mitigate exposure.

Affected Version(s)

PDF-XChange Editor 10.5.2.395

References

CVSS V3.0

Score:
3.3
Severity:
LOW
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-6662 : Out-Of-Bounds Read Vulnerability in PDF-XChange Editor by Tracker Software