Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
foxit reader vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-42097
Foxit PDF Reader Annotation Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote malicious users to execute arbitrary code on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target ...
Foxit Pdf Editor
Foxit Pdf Reader
Foxit Pdf Editor 2023.1.0.15510
6.8
CVSSv2
CVE-2020-14425
Foxit Reader prior to 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API. An attacker can execute local files and bypass the security dialog.
Foxitsoftware Foxit Reader
NA
CVE-2022-43310
An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows malicious users to escalate privileges when searching for DLL libraries without specifying an absolute path.
Foxitsoftware Foxit Reader
NA
CVE-2020-35990
Buffer Overflow vulnerability in cFilenameInit parameter in browseForDoc function in Foxit Software Foxit PDF Reader version 10.1.0.37527, allows local malicious users to cause a denial of service (DoS) via crafted .pdf file.
Foxit Pdf Reader
NA
CVE-2023-42089
Foxit PDF Reader templates Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote malicious users to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the...
Foxit Pdf Editor
Foxit Pdf Reader
Foxit Pdf Editor 2023.1.0.15510
Foxit Pdf Editor For Mac
4.3
CVSSv2
CVE-2015-3632
Foxit Reader, Enterprise Reader, and PhantomPDF prior to 7.1.5 allow remote malicious users to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file.
Foxitsoftware Phantompdf
Foxitsoftware Foxit Reader
Foxitsoftware Enterprise Reader
1 EDB exploit
4.3
CVSSv2
CVE-2015-2790
Foxit Reader, Enterprise Reader, and PhantomPDF prior to 7.1 allow remote malicious users to cause a denial of service (memory corruption and crash) via a crafted (1) Ubyte Size in a DataSubBlock structure or (2) LZWMinimumCodeSize in a GIF image.
Foxitsoftware Phantompdf
Foxitsoftware Foxit Reader
Foxitsoftware Enterprise Reader
2 EDB exploits
NA
CVE-2023-39542
A code execution vulnerability exists in the Javascript saveAs API of Foxit Reader 12.1.3.15356. A specially crafted malformed file can create arbitrary files, which can lead to remote code execution. An attacker needs to trick the user into opening the malicious file to trigger ...
Foxitsoftware Foxit Reader 12.1.3.15356
NA
CVE-2023-35985
An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due to a failure to properly validate a dangerous extension. A specially crafted malicious file can create files at arbitrary locations, which can lead to arbitrary...
Foxitsoftware Foxit Reader 12.1.3.15356
1 Github repository
NA
CVE-2023-40194
An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due to mistreatment of whitespace characters. A specially crafted malicious file can create files at arbitrary locations, which can lead to arbitrary code execution...
Foxitsoftware Foxit Reader 12.1.3.15356
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
NEXT »