PT-2025-50779 · Pdfsam · Enhanced

Kimiya

·

Published

2025-12-11

·

Updated

2025-12-24

·

CVE-2025-14402

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PDFsam Enhanced (affected versions not specified)
Description A flaw exists in PDFsam Enhanced related to the processing of DOC files. The issue stems from allowing the execution of potentially harmful scripts without providing a warning to the user. An attacker could leverage this to execute code with the privileges of the current user. User interaction is required, such as visiting a malicious page or opening a malicious file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2025-14402
ZDI-25-1090

Affected Products

Enhanced