Vulnerabilities (CVE)

Filtered by vendor Kde Subscribe
Filtered by product Okular
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-9359 3 Debian, Fedoraproject, Kde 3 Debian Linux, Fedora, Okular 2023-12-10 6.8 MEDIUM 5.3 MEDIUM
KDE Okular before 1.10.0 allows code execution via an action link in a PDF document.
CVE-2018-1000801 2 Debian, Kde 2 Debian Linux, Okular 2023-12-10 4.3 MEDIUM 5.5 MEDIUM
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1