VYPR

Office Server Document Converter

by Antenna House

CVEs (6)

  • CVE-2018-3936HigJul 11, 2018
    risk 0.57cvss 8.8epss 0.02

    In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution.

  • CVE-2018-3933HigJul 11, 2018
    risk 0.57cvss 8.8epss 0.02

    An exploitable out-of-bounds write exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to an out-of-bounds write,…

  • CVE-2018-3932HigJul 11, 2018
    risk 0.57cvss 8.8epss 0.03

    An exploitable stack-based buffer overflow exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to a stack-based…

  • CVE-2018-3931HigJul 11, 2018
    risk 0.51cvss 7.8epss 0.02

    In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `putShapeProperty` method.

  • CVE-2018-3930HigJul 11, 2018
    risk 0.51cvss 7.8epss 0.02

    In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `vbgetfp` method.

  • CVE-2018-3929HigJul 11, 2018
    risk 0.51cvss 7.8epss 0.02

    An exploitable heap corruption exists in the PowerPoint document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted PowerPoint (PPT) document can lead to heap corruption, resulting in remote…