CVE-2020-12247
- EPSS 0.13%
- Published 04.09.2020 04:15:11
- Last modified 21.11.2024 04:59:22
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information from an out-of-bounds read because a text-string index continues to be used after splitting a string into two parts. A crash may als...
CVE-2020-12248
- EPSS 0.53%
- Published 04.09.2020 04:15:11
- Last modified 21.11.2024 04:59:22
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can execute arbitrary code via a heap-based buffer overflow because dirty image-resource data is mishandled.
CVE-2020-15637
- EPSS 0.9%
- Published 20.08.2020 01:17:13
- Last modified 21.11.2024 05:05:55
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 9.7.1.29511. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open ...
CVE-2020-15638
- EPSS 0.37%
- Published 20.08.2020 01:17:13
- Last modified 21.11.2024 05:05:55
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.2.29539. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malici...
CVE-2019-20834
- EPSS 0.01%
- Published 04.06.2020 17:15:13
- Last modified 21.11.2024 04:39:29
An issue was discovered in Foxit PhantomPDF before 8.3.10. It allows signature validation bypass via a modified file or a file with non-standard signatures.
CVE-2019-20835
- EPSS 0.05%
- Published 04.06.2020 17:15:13
- Last modified 21.11.2024 04:39:29
An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has homograph mishandling.
CVE-2019-20836
- EPSS 0.02%
- Published 04.06.2020 17:15:13
- Last modified 21.11.2024 04:39:29
An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has mishandling of cloud credentials, as demonstrated by Google Drive.
CVE-2019-20837
- EPSS 0.01%
- Published 04.06.2020 17:15:13
- Last modified 21.11.2024 04:39:29
An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It allows signature validation bypass via a modified file or a file with non-standard signatures.
CVE-2019-20823
- EPSS 0.02%
- Published 04.06.2020 17:15:12
- Last modified 21.11.2024 04:39:27
An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a buffer overflow because a looping correction does not occur after JavaScript updates Field APs.
CVE-2019-20824
- EPSS 0.02%
- Published 04.06.2020 17:15:12
- Last modified 21.11.2024 04:39:27
An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a NULL pointer dereference via FXSYS_wcslen in an Epub file.