CVE-2022-30350
Avanquest Software RAD PDF (PDFEscape Online) 3.19.2.2 is vulnerable to Information Leak / Disclosure. The PDFEscape Online tool provides users with a "white out" functionality for redacting images, text, and other graphics from a PDF document. However, this mechanism does not remove underlying text or PDF object specification information from the PDF. As a result, for example, redacted text may be copy-pasted by a PDF reader.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2022-30350.
What is the severity of CVE-2022-30350?
The severity of CVE-2022-30350 is high with a score of 7.5.
What is the affected software version of CVE-2022-30350?
The affected software version of CVE-2022-30350 is Avanquest Software RAD PDF (PDFEscape Online) 3.19.2.2.
What is the vulnerability description of CVE-2022-30350?
CVE-2022-30350 is an information leak/disclosure vulnerability in Avanquest Software RAD PDF (PDFEscape Online) 3.19.2.2. The "white out" functionality in PDFEscape Online does not remove underlying text, leading to potential information disclosure.
How do I fix CVE-2022-30350?
As a user, make sure to update Avanquest Software RAD PDF (PDFEscape Online) to a secure version once a fix is available.