CVE-2019-11493

HIGH

VeryPDF 4.1 - Memory Overflow in pdfocx!CxImageTIF::operator

Title source: llm
STIX 2.1

Description

VeryPDF 4.1 has a Memory Overflow leading to Code Execution because pdfocx!CxImageTIF::operator in pdfocx.ocx (used by pdfeditor.exe and pdfcmd.exe) is mishandled.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0143
EPSS Percentile 69.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (1)
verypdf/verypdf 4.1
Published Apr 26, 2019
Tracked Since Feb 18, 2026