Exploitation Summary
EIP tracks 1 public exploit for CVE-2025-48708. PoCs published by B1tBreaker.
AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2025-48708, a vulnerability in Artifex Ghostscript where plaintext passwords are embedded in generated PDFs due to insufficient argument sanitization. It includes reproduction steps and references to official sources.
Description
gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A created PDF document includes its password in cleartext.
Exploits (1)
This repository provides a detailed technical analysis of CVE-2025-48708, a vulnerability in Artifex Ghostscript where plaintext passwords are embedded in generated PDFs due to insufficient argument sanitization. It includes reproduction steps and references to official sources.
References (3)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N