CVE-2026-30287
Awaiting Analysis
Awaiting Analysis - Queue
Arbitrary File Overwrite in ACE Scanner PDF Leads to Code Execution
Publication date: 2026-04-01
Last updated on: 2026-04-02
Assigner: MITRE
Description
Description
An arbitrary file overwrite vulnerability in Deep Thought Industries ACE Scanner PDF Scanner v1.4.5 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| deepthought.industries | ace_scanner | 1.4.5 |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-73 | The product allows user input to control or influence paths or file names that are used in filesystem operations. |