CVE-2026-30292

HIGH

Docudepot PDF Reader 1.0.34 - File Overwrite

Title source: llm
STIX 2.1

Description

An arbitrary file overwrite vulnerability in Docudepot PDF Reader: PDF Viewer APP v1.0.34 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.

Scores

CVSS v3 8.4
EPSS 0.0002
EPSS Percentile 4.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact total

Details

CWE
CWE-73
Status published
Published Apr 01, 2026
Tracked Since Apr 01, 2026