CVE-2020-7374 - CVE House
Back to Database
Status published Medium CVE-2020-7374

Documalis Free PDF Editor / Free PDF Scanner Stack Based Buffer Overflow

Vulnerability Description

Documalis Free PDF Editor version 5.7.2.26 and Documalis Free PDF Scanner version 5.7.2.122 do not appropriately validate the contents of JPEG images contained within a PDF. Attackers can exploit this vulnerability to trigger a buffer overflow on the stack and gain remote code execution as the user running the Documalis Free PDF Editor or Documalis Free PDF Scanner software.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2020-7374

Credits & Attribution

The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:

  • This issue was discovered and reported by metacom27.

Affected Vendor

Affected Software

Free PDF Editor, Free PDF Scanner
Vulnerable Versions:
5.7.2.26, 5.7.2.122

Timeline

Official Publish: August 12th, 2020
Last Modified: September 17th, 2024
Added to House: July 21st, 2026

CVSS Vectors

V3: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L

Weaknesses (CWE)