Known vulnerabilities in Nitro Pro
Vendor:
Nitro Software, Inc.
Software:
Nitro Pro
Software CPE:
cpe:2.3:a:nitro_software:nitro_pro:*:*:*:*:*:*:*:*
Website:
https://www.gonitro.com/
Total vulnerabilities:
15
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
14.34.2.0
14.34.1.0
14.32.0.15
14.29.1.0
14.28.5.0
14.28.4.2
14.27.2.0
14.26.1.0
14.24.1.0
14.22.1.0
14.19.1.29
14.18.1.41
14.17.2.29
14.14.0.13
14.7.1.21
14.5.0.11
14.3.1.193
13.70.8.82
13.70.7.60
13.70.4.50
13.70.2.40
13.67.0.45
13.58.0.1180
13.53.3.1073
13.50.4.1013
13.47.4.957
13.46.0.937
13.45.0.917
13.44.0.896
13.49.2.993
13.42.3.855
13.38.1.739
13.35.3.685
13.33.2.645
12.16.6.574
13.31.0.605
13.30.2.587
13.29.2.566
13.26.3.505
13.24.1.467
13.22.0.414
10.5.5.9
13.19.2.356
13.16.2.300
13.15.1.282
13.13.2.242
13.9.1.155
13.8.2.140
13.6.0.108
13.2.6.26
13.2.3.26
13.2.2.25
12.16.3.574
12.14.0.558
12.12.1.522
12.11.0.509
12.10.1.487
12.9.1.474
12.8.0.449
12.7.0.395
12.6.1.298
12.5.0.268
12.4.0.259
12.3.0.240
12.2.0.228
12.1.0.195
12.0.0.112
11.0.8.470
11.0.7.425
11.0.7.411
11.0.6.326
11.0.5.271
11.0.3.173
11.0.3.134
11.0.2.110
11.0.1.10
11.0.0.64
Vulnerabilities (15)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU57384 - Double Free CVE-2021-21797 |
CWE-415 | High | 13.49.2.993 | 15.10.2021 |
SB2021101505 SB2022112521 |
||
| #VU57383 - Use After Free CVE-2021-21796 |
CWE-416 | High | 13.49.2.993 | 15.10.2021 |
SB2021101505 |
||
| #VU56606 - Use After Free CVE-2021-21798 |
CWE-416 | High | 13.49.2.993 | 15.09.2021 |
SB2021091508 |
||
| #VU46753 - Heap-based Buffer Overflow CVE-2020-6146 |
CWE-122 | High | 13.24.1.467 | 16.09.2020 |
SB2020091632 |
||
| #VU46752 - Integer overflow CVE-2020-6116 |
CWE-190 | High | 13.24.1.467 | 16.09.2020 |
SB2020091632 |
||
| #VU46751 - Use After Free CVE-2020-6115 |
CWE-416 | High | 13.24.1.467 | 16.09.2020 |
SB2020091632 |
||
| #VU46750 - Integer overflow CVE-2020-6113 |
CWE-190 | High | 13.24.1.467 | 16.09.2020 |
SB2020091632 |
||
| #VU46749 - Out-of-bounds write CVE-2020-6112 |
CWE-787 | High | 13.24.1.467 | 16.09.2020 |
SB2020091632 |
||
| #VU27995 - Use After Free CVE-2020-6074 |
CWE-416 | High | 13.15.1.282 | 19.05.2020 |
SB2020051903 |
||
| #VU27993 - Access of Uninitialized Pointer CVE-2020-6093 |
CWE-824 | Medium | 13.15.1.282 | 19.05.2020 |
SB2020051903 |
||
| #VU27992 - Integer overflow CVE-2020-6092 |
CWE-190 | High | 13.15.1.282 | 19.05.2020 |
SB2020051903 |
||
| #VU34801 - Out-of-bounds write CVE-2020-10222 |
CWE-787 | High | 13.13.2.242 | 09.03.2020 |
SB2020030920 |
||
| #VU34802 - Out-of-bounds write CVE-2020-10223 |
CWE-787 | High | 13.13.2.242 | 09.03.2020 |
SB2020030920 |
||
| #VU38606 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2017-7442 |
CWE-22 | High | - | 03.08.2017 |
SB2017080320 |
||
| #VU39666 - Out-of-bounds write CVE-2016-8713 |
CWE-787 | High | - | 10.02.2017 |
SB2017021009 |