Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
foxit phantompdf vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2018-10303
A use-after-free in Foxit Reader prior to 9.1 and PhantomPDF prior to 9.1 allows remote malicious users to execute arbitrary code, aka iDefense ID V-y0nqfutlf3.
Foxitsoftware Phantompdf
Foxitsoftware Foxit Reader
6.8
CVSSv2
CVE-2018-9958
This vulnerability allows remote malicious users to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw...
Foxitsoftware Phantompdf
Foxitsoftware Foxit Reader
2 EDB exploits
1 Github repository
6.8
CVSSv2
CVE-2016-4059
Use-after-free vulnerability in Foxit Reader and PhantomPDF prior to 7.3.4 on Windows allows remote malicious users to execute arbitrary code via a crafted FlateDecode stream in a PDF document.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
5
CVSSv2
CVE-2016-4060
Use-after-free vulnerability in Foxit Reader and PhantomPDF prior to 7.3.4 on Windows allows remote malicious users to cause a denial of service (application crash) via unspecified vectors.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
4.3
CVSSv2
CVE-2016-4062
Foxit Reader and PhantomPDF prior to 7.3.4 on Windows improperly report format errors recursively, which allows remote malicious users to cause a denial of service (application hang) via a crafted PDF.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
6.8
CVSSv2
CVE-2016-4064
Use-after-free vulnerability in the XFA forms handling functionality in Foxit Reader and PhantomPDF prior to 7.3.4 on Windows allows remote malicious users to execute arbitrary code via a crafted remerge call.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
6.8
CVSSv2
CVE-2021-33792
Foxit Reader prior to 10.1.4 and PhantomPDF prior to 10.1.4 have an out-of-bounds write via a crafted /Size key in the Trailer dictionary.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
7.5
CVSSv2
CVE-2021-33793
Foxit Reader prior to 10.1.4 and PhantomPDF prior to 10.1.4 have an out-of-bounds write because the Cross-Reference table is mishandled during Office document conversion.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
6.4
CVSSv2
CVE-2021-33794
Foxit Reader prior to 10.1.4 and PhantomPDF prior to 10.1.4 allow information disclosure or an application crash after mishandling the Tab key during XFA form interaction.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
4.3
CVSSv2
CVE-2021-33795
Foxit Reader prior to 10.1.4 and PhantomPDF prior to 10.1.4 produce incorrect PDF document signatures because the certificate name, document owner, and signature author are mishandled.
Foxitsoftware Foxit Reader
Foxitsoftware Phantompdf
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »