CVE-2026-30292

8.4

Docudepot · PDF Viewer APP

A file overwrite vulnerability in Docudepot PDF Viewer APP v1.0.34 allows unauthenticated attackers to overwrite critical files, potentially leading to remote code execution.

Executive summary

A critical arbitrary file overwrite vulnerability in Docudepot PDF Viewer APP allows unauthenticated attackers to gain code execution or expose sensitive data.

Vulnerability

The application fails to properly validate file paths during the import process, allowing an unauthenticated attacker to overwrite arbitrary files on the host system.

Business impact

This vulnerability carries a CVSS score of 8.4, reflecting a high risk of total system compromise. A successful exploit could allow an attacker to overwrite configuration files or binaries, resulting in complete loss of confidentiality, integrity, and availability of the affected system.

Remediation

Immediate Action: Since a specific patch is currently unconfirmed, users should restrict application usage and monitor the vendor website for official security updates.

Proactive Monitoring: Security teams should monitor system logs for suspicious file write operations or unauthorized attempts to access critical application directories.

Compensating Controls: Deploy endpoint detection and response (EDR) solutions to identify and block unauthorized file system modifications initiated by the PDF Viewer application.

Exploitation status

Public Exploit Available: Yes — a public proof-of-concept exists as documented in the research write-up by Secsys-FDU.

Analyst recommendation

The potential for arbitrary code execution makes this a high-priority risk for any environment utilizing this software. Organizations should prioritize updating the application as soon as the vendor releases a fix and should consider limiting the software's permissions until a patched version is deployed.

Sources