Investintech maintains a focused portfolio of PDF processing and document-conversion tools, including SlimPDF Reader, Able2Extract, Able2Doc, and server-oriented variants, that handle user-supplied file input across conversion and parsing workflows. Its vulnerability profile recurs through weakness classes typical of binary document processors—integer overflow, out-of-bounds writes, and parsing edge cases—and frequently acquires public exploit code. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Investintech over time
Signals from CVEs in this vendor scope (10 CVEs).
10 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2011-4222HIGH Unspecified vulnerability in Investintech.com Able2Extract and Able2Extract Server allows remote attackers to cause a denial of service (application crash) or possibly execute arbi | Nov 1, 2011 | 9.3 | 40 | NO | YES |
CVE-2011-4221HIGH Unspecified vulnerability in Investintech.com Able2Doc and Able2Doc Professional allows remote attackers to cause a denial of service (application crash) or possibly execute arbitr | Nov 1, 2011 | 9.3 | 40 | NO | YES |
CVE-2011-4220HIGH Investintech.com SlimPDF Reader does not properly restrict the arguments to unspecified function calls, which allows remote attackers to cause a denial of service (application cras | Nov 1, 2011 | 9.3 | 39 | NO | YES |
CVE-2011-4219HIGH Investintech.com SlimPDF Reader does not prevent faulting-address data from affecting branch selection, which allows remote attackers to cause a denial of service (application cras | Nov 1, 2011 | 9.3 | 28 | NO | NO |
CVE-2011-4223HIGH Unspecified vulnerability in Investintech.com Absolute PDF Server allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a | Nov 1, 2011 | 9.3 | 27 | NO | NO |
CVE-2011-4218HIGH Investintech.com SlimPDF Reader does not prevent faulting-instruction data from affecting write operations, which allows remote attackers to cause a denial of service (application | Nov 1, 2011 | 9.3 | 27 | NO | NO |
CVE-2011-4217HIGH Investintech.com SlimPDF Reader does not properly restrict read operations during block data moves, which allows remote attackers to cause a denial of service (application crash) o | Nov 1, 2011 | 9.3 | 26 | NO | NO |
CVE-2011-4216HIGH Investintech.com SlimPDF Reader does not properly restrict write operations, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbi | Nov 1, 2011 | 9.3 | 26 | NO | NO |
CVE-2019-5089HIGH An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 4.0.7 x64. A specially crafted JPEG file can cause an out-of-bounds memory write, al | Nov 5, 2019 | 7.8 | 24 | NO | NO |
CVE-2019-5088HIGH An exploitable memory corruption vulnerability exists in Investintech Able2Extract Professional 14.0.7 x64. A specially crafted BMP file can cause an out-of-bounds memory write, al | Nov 5, 2019 | 7.8 | 24 | NO | NO |
Signals from CVEs in this vendor scope (10 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Investintech.
Media articles that mention a CVE ID that affects a product developed by Investintech — matched by CVE ID, not by vendor name.