HTTP: Corel PDF Fusion XPS Stack Buffer Overflow(2)

This signature detects attempts to exploit a known vulnerability in the Corel PDF Fusion. A successful attack can lead to a buffer overflow and arbitrary remote code execution within the context of the application.

Extended Description

Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wintab32.dll file in the current working directory, as demonstrated by a directory that contains a .pdf or .xps file.

Affected Products

Corel pdf_fusion

Short Name
HTTP:MISC:COREL-PDF-FUSION-XPS2
Severity
Critical
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
Buffer CVE-2013-3248 Corel Fusion Overflow(2) PDF Stack XPS bid:61010
Release Date
03/25/2023
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Corel

Found a potential security threat?