Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
foxitsoftware phantompdf vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2019-20827
An issue exists in Foxit PhantomPDF Mac 3.3 and Foxit Reader for Mac prior to 3.3. It allows stack consumption because of interaction between ICC-Based color space and Alternate color space.
Foxitsoftware Phantompdf
Foxitsoftware Reader
9.8
CVSSv3
CVE-2019-20830
An issue exists in Foxit Reader and PhantomPDF prior to 9.6. It has an out-of-bounds write when Internet Explorer is used.
Foxitsoftware Phantompdf
Foxitsoftware Reader
7.5
CVSSv3
CVE-2019-20833
An issue exists in Foxit PhantomPDF prior to 8.3.10. It has mishandling of cloud credentials, as demonstrated by Google Drive.
Foxitsoftware Phantompdf
7.5
CVSSv3
CVE-2019-20837
An issue exists in Foxit Reader and PhantomPDF prior to 9.5. It allows signature validation bypass via a modified file or a file with non-standard signatures.
Foxitsoftware Phantompdf
Foxitsoftware Reader
5.3
CVSSv3
CVE-2018-21237
An issue exists in Foxit PhantomPDF prior to 8.3.7. It allows NTLM credential theft via a GoToE or GoToR action.
Foxitsoftware Phantompdf
7.5
CVSSv3
CVE-2018-21238
An issue exists in Foxit PhantomPDF prior to 8.3.7. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.
Foxitsoftware Phantompdf
7.5
CVSSv3
CVE-2018-21240
An issue exists in Foxit Reader and PhantomPDF prior to 9.2. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.
Foxitsoftware Phantompdf
Foxitsoftware Reader
7.8
CVSSv3
CVE-2018-21241
An issue exists in Foxit PhantomPDF prior to 8.3.6. It has an untrusted search path that allows a DLL to execute remote code.
Foxitsoftware Phantompdf
9.8
CVSSv3
CVE-2018-21242
An issue exists in Foxit PhantomPDF prior to 8.3.6. It allows Remote Code Execution via a GoToE or GoToR action.
Foxitsoftware Phantompdf
6.5
CVSSv3
CVE-2018-21243
An issue exists in Foxit PhantomPDF prior to 8.3.6. It has COM object mishandling when Microsoft Word is used.
Foxitsoftware Phantompdf
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »