Denial of Service and Remote Code Execution Vulnerability in Investintech.com SlimPDF Reader

Denial of Service and Remote Code Execution Vulnerability in Investintech.com SlimPDF Reader

CVE-2011-4217 · HIGH Severity

AV:N/AC:M/AU:N/C:C/I:C/A:C

Investintech.com SlimPDF Reader does not properly restrict read operations during block data moves, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF document.

Learn more about our Web Application Penetration Testing UK.