CVE-2020-18972

Exposure of Sensitive Information to an Unauthorized Actor in PoDoFo v0.9.6 allows attackers to obtain sensitive information via 'IsNextToken' in the component 'src/base/PdfToenizer.cpp'.
References
Link Resource
https://sourceforge.net/p/podofo/tickets/49/ Exploit Issue Tracking Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:podofo_project:podofo:0.9.6:-:*:*:*:*:*:*

Information

Published : 2021-08-25 09:15

Updated : 2021-09-07 09:41


NVD link : CVE-2020-18972

Mitre link : CVE-2020-18972


JSON object : View

CWE
CWE-668

Exposure of Resource to Wrong Sphere

Advertisement

dedicated server usa

Products Affected

podofo_project

  • podofo