CVE-2018-20316
- EPSS 0.03%
- Veröffentlicht 07.01.2021 18:15:12
- Zuletzt bearbeitet 21.11.2024 04:01:13
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 because of a different opcode.
CVE-2018-20309
- EPSS 0.03%
- Veröffentlicht 07.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:01:12
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that can cause a stack-based buffer overflow or an out-of-bounds read.
CVE-2018-20310
- EPSS 0.03%
- Veröffentlicht 07.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:01:12
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read.
CVE-2018-20311
- EPSS 0.03%
- Veröffentlicht 07.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:01:12
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read.
CVE-2018-20312
- EPSS 0.03%
- Veröffentlicht 07.01.2021 17:15:12
- Zuletzt bearbeitet 21.11.2024 04:01:12
Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 because of a different opcode.
CVE-2020-35931
- EPSS 0.09%
- Veröffentlicht 31.12.2020 21:15:12
- Zuletzt bearbeitet 21.11.2024 05:28:32
An issue was discovered in Foxit Reader before 10.1.1 (and before 4.1.1 on macOS) and PhantomPDF before 9.7.5 and 10.x before 10.1.1 (and before 4.1.1 on macOS). An attacker can spoof a certified PDF document via an Evil Annotation Attack because the...
CVE-2020-28203
- EPSS 0.02%
- Veröffentlicht 15.12.2020 13:15:12
- Zuletzt bearbeitet 21.11.2024 05:22:28
An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null pointer access/dereference while opening a crafted PDF file, leading the application to crash (denial of service).
CVE-2020-17414
- EPSS 0.07%
- Veröffentlicht 13.10.2020 17:15:14
- Zuletzt bearbeitet 21.11.2024 05:08:03
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit Reader 10.0.0.35798. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerabil...
CVE-2020-17415
- EPSS 0.07%
- Veröffentlicht 13.10.2020 17:15:14
- Zuletzt bearbeitet 21.11.2024 05:08:03
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PhantomPDF 10.0.0.35798. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulner...
CVE-2020-17416
- EPSS 2.34%
- Veröffentlicht 13.10.2020 17:15:14
- Zuletzt bearbeitet 21.11.2024 05:08:03
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.0.35798. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious...