Skip to content

optional

I hack things and occasionally write about it

Month: September 2021

Written by optionalSeptember 14, 2021September 14, 2021

CVE-2020-35340 – Local File Inclusion in ExpertPDF 9.5.0 – 14.1.0

Affected Vendor: expertpdf.net || nuget.org/packages/ExpertPdfHtmlToPdf/ Affected Versions: 9.5.0 – 14.1.0 Context ExpertPDF is a .NET library that has been downloaded over 300,000 times. The core functionality of this library is to allow conversion of HTML to PDF whether from raw HTML or from a file. Now a question for you… Q: What happens when we […]