Aggregates CVE and security vulnerability intelligence across all investintech-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Historical issues mainly involve vendor risk buffer overflow and vendor risk memory corruption and related problems; some flaws may lead to vendor impact application crash and vendor impact memory corruption.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2019-5089 | An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially crafted JPEG file can cause an out-of-bounds memory write, allowing an attacker to execute arbitrary code on the victim machine. An attacker could exploit a vulnerability by providing the user with a specially crafted JPEG file. | [email protected] | 7.8 | 0.34% | 2019-11-05 | 2024-11-21 |
| CVE-2019-5088 | An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially crafted BMP file can cause an out-of-bounds memory write, allowing a potential attacker to execute arbitrary code on the victim machine. Can trigger this vulnerability by sending the user a specially crafted BMP file. | [email protected] | 7.8 | 0.34% | 2019-11-05 | 2024-11-21 |
| CVE-2011-4223 | Unspecified vulnerability in Investintech.com Absolute PDF Server allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. | [email protected] | 9.3 | 3.05% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4222 | Unspecified vulnerability in Investintech.com Able2Extract and Able2Extract Server allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted document. | [email protected] | 9.3 | 10.47% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4221 | Unspecified vulnerability in Investintech.com Able2Doc and Able2Doc Professional allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted document. | [email protected] | 9.3 | 10.47% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4220 | Investintech.com SlimPDF Reader does not properly restrict the arguments to unspecified function calls, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. | [email protected] | 9.3 | 19.82% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4219 | Investintech.com SlimPDF Reader does not prevent faulting-address data from affecting branch selection, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. | [email protected] | 9.3 | 3.05% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4218 | Investintech.com SlimPDF Reader does not prevent faulting-instruction data from affecting write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. | [email protected] | 9.3 | 3.05% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4217 | Investintech.com SlimPDF Reader does not properly restrict read operations during block data moves, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. | [email protected] | 9.3 | 2.66% | 2011-11-01 | 2026-04-29 |
| CVE-2011-4216 | Investintech.com SlimPDF Reader does not properly restrict write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document. | [email protected] | 9.3 | 3.05% | 2011-11-01 | 2026-04-29 |