High severity8.4NVD Advisory· Published Mar 26, 2026· Updated Jun 17, 2026
CVE-2018-25217
CVE-2018-25217
Description
PDF Explorer 1.5.66.2 contains a structured exception handler (SEH) overflow vulnerability that allows local attackers to execute arbitrary code by overwriting SEH records with malicious data. Attackers can craft a payload with buffer overflow, NSEH jump, and ROP gadget chains that execute when the Custom fields settings dialog processes the malicious input in the Label field.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:rttsoftware:pdf_explorer:1.5.66.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:rttsoftware:pdf_explorer:1.5.66.2:*:*:*:*:*:*:*
- (no CPE)range: =1.5.66.2
- Rttsoftware/PDF Explorerv5Range: 1.5.66.2
Patches
Vulnerability mechanics
References
4- www.exploit-db.com/exploits/46016nvdExploitVDB Entry
- www.vulncheck.com/advisories/pdf-explorer-structured-exception-handler-local-code-executionnvdThird Party Advisory
- www.rttsoftware.comnvdProduct
- www.rttsoftware.com/files/PDFExplorerTrialSetup.zipnvdProduct
News mentions
0No linked articles in our index yet.