VYPR
Vendor

Antenna House

Products
2
CVEs
11
Across products
17
Status
Private

Products

2

Recent CVEs

11
  • CVE-2018-3936HigJul 11, 2018
    risk 0.57cvss 8.8epss 0.03

    In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution.

  • CVE-2018-3933HigJul 11, 2018
    risk 0.57cvss 8.8epss 0.03

    An exploitable out-of-bounds write exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to an out-of-bounds write,…

  • CVE-2018-3932HigJul 11, 2018
    risk 0.57cvss 8.8epss 0.03

    An exploitable stack-based buffer overflow exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to a stack-based…

  • CVE-2016-8384HigApr 24, 2018
    risk 0.57cvss 8.8epss 0.02

    An exploitable heap corruption vulnerability exists in the DHFSummary functionality of AntennaHouse DMC HTMLFilter.

  • CVE-2016-8383HigApr 24, 2018
    risk 0.57cvss 8.8epss 0.02

    An exploitable heap corruption vulnerability exists in the Doc_GetFontTable functionality of AntennaHouse DMC HTMLFilter. A specially crafted doc file can cause a heap corruption resulting in arbitrary code execution. An attacker can send/provide malicious doc file to trigger…

  • CVE-2016-8382HigApr 24, 2018
    risk 0.54cvss 8.3epss 0.02

    An exploitable heap corruption vulnerability exists in the Doc_SetSummary functionality of AntennaHouse DMC HTMLFilter. A specially crafted doc file can cause a heap corruption resulting in arbitrary code execution. An attacker can send a malicious doc file to trigger this…

  • CVE-2018-3931HigJul 11, 2018
    risk 0.51cvss 7.8epss 0.02

    In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `putShapeProperty` method.

  • CVE-2018-3930HigJul 11, 2018
    risk 0.51cvss 7.8epss 0.02

    In Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), a crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `vbgetfp` method.

  • CVE-2018-3929HigJul 11, 2018
    risk 0.51cvss 7.8epss 0.02

    An exploitable heap corruption exists in the PowerPoint document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted PowerPoint (PPT) document can lead to heap corruption, resulting in remote…

  • CVE-2021-20838HigNov 1, 2021
    risk 0.49cvss 7.5epss 0.02

    Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to conduct an XML External Entity (XXE) attack to cause a denial of service (DoS) condition by processing a specially crafted XML document.

  • CVE-2021-20839MedNov 1, 2021
    risk 0.42cvss 6.5epss 0.01

    Office Server Document Converter V7.2MR4 and earlier and V7.1MR7 and earlier allows a remote unauthenticated attacker to conduct an XML External Entity (XXE) attack to cause a denial of service (DoS) condition to the other servers by processing a specially crafted XML document.