Description
A security flaw has been discovered in iAI Lab PDF AI App 4.21.0 on Android. Impacted is the function getExternalCacheDir of the component chatpdf.pro. Performing a manipulation of the argument _display_name results in path traversal. The attack requires a local approach. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Published: 2026-06-06
Score: 4.8 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability arises from the getExternalCacheDir function in iAI Lab PDF AI App, which allows a path traversal by manipulating the _display_name argument. This flaw can enable an attacker with local device access to read or write arbitrary files within the external cache directory, potentially compromising personal data, configuration files, or other sensitive information stored on the device. The weakness is classified as CWE-22 and is limited to affecting confidentiality and integrity of local files rather than remote systems.

Affected Systems

The flaw affects iAI Lab PDF AI App version 4.21.0 running on Android devices. No other product versions are listed as impacted. Users of this specific version are the only ones at risk.

Risk and Exploitability

The CVSS score of 4.8 indicates a moderate severity level, and the exploit requires a local approach, meaning the attacker must have physical or credential access to the device. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog, implying that it is not widely known as a actively exploited threat at this time. However, since the exploit code has been released publicly, it could be used by malicious actors who gain local access to compromise data integrity on the device. The absence of a public remote exploit reduces the threat surface, but local attackers could still abuse the path traversal for data exfiltration or manipulation.

Generated by OpenCVE AI on June 6, 2026 at 12:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update iAI Lab PDF AI App to the latest available version that addresses the path traversal flaw
  • If an update is unavailable, consider uninstalling or disabling the chatpdf.pro component to mitigate the risk of local data compromise
  • Monitor the device for unusual file creation or modification in the external cache directory and investigate promptly

Generated by OpenCVE AI on June 6, 2026 at 12:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 06 Jun 2026 11:15:00 +0000

Type Values Removed Values Added
Description A security flaw has been discovered in iAI Lab PDF AI App 4.21.0 on Android. Impacted is the function getExternalCacheDir of the component chatpdf.pro. Performing a manipulation of the argument _display_name results in path traversal. The attack requires a local approach. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Title iAI Lab PDF AI App chatpdf.pro getExternalCacheDir path traversal
First Time appeared Iai Lab
Iai Lab pdf Ai App
Weaknesses CWE-22
CPEs cpe:2.3:a:iai_lab:pdf_ai_app:*:*:*:*:*:*:*:*
Vendors & Products Iai Lab
Iai Lab pdf Ai App
References
Metrics cvssV2_0

{'score': 3.2, 'vector': 'AV:L/AC:L/Au:S/C:N/I:P/A:P/E:POC/RL:ND/RC:UR'}

cvssV3_0

{'score': 4.4, 'vector': 'CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L/E:P/RL:X/RC:R'}

cvssV4_0

{'score': 4.8, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N/E:P'}


Subscriptions

Iai Lab Pdf Ai App
cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published:

Updated: 2026-06-06T10:45:07.495Z

Reserved: 2026-06-05T18:37:23.840Z

Link: CVE-2026-11411

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-06-06T11:16:49.110

Modified: 2026-06-06T11:16:49.110

Link: CVE-2026-11411

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-06T15:15:23Z

Weaknesses