CVE-2021-39307

PDFTron's WebViewer UI 8.0 or below renders dangerous URLs as hyperlinks in supported documents, including JavaScript URLs, allowing the execution of arbitrary JavaScript code.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:pdftron:webviewer_ui:*:*:*:*:*:*:*:*

Information

Published : 2021-09-15 06:15

Updated : 2021-09-30 12:18


NVD link : CVE-2021-39307

Mitre link : CVE-2021-39307


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

pdftron

  • webviewer_ui