A Cross-Site Scripting (XSS) vulnerability in the Rendering Engine component in Apryse WebViewer v11.1 and earlier allows attackers to execute arbitrary code via a crafted PDF file.
References
| Link | Resource |
|---|---|
| https://gist.github.com/devom3/43c328e23ec854090ed555a13541ca94 | Exploit Issue Tracking |
Configurations
History
No history.
Information
Published : 2025-03-03 17:15
Updated : 2025-07-10 22:43
NVD link : CVE-2024-57240
Mitre link : CVE-2024-57240
CVE.ORG link : CVE-2024-57240
JSON object : View
Products Affected
apryse
- webviewer
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
