Foxitsoftware

Foxit Reader

379 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.02%
  • Veröffentlicht 27.11.2023 16:15:10
  • Zuletzt bearbeitet 04.11.2025 20:16:36

An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due to mistreatment of whitespace characters. A specially crafted malicious file can create files at arbitrary locations, which can le...

Exploit
  • EPSS 0.25%
  • Veröffentlicht 27.11.2023 16:15:09
  • Zuletzt bearbeitet 04.11.2025 20:16:33

An arbitrary file creation vulnerability exists in the Javascript exportDataObject API of Foxit Reader 12.1.3.15356 due to a failure to properly validate a dangerous extension. A specially crafted malicious file can create files at arbitrary location...

Exploit
  • EPSS 0.02%
  • Veröffentlicht 27.11.2023 16:15:08
  • Zuletzt bearbeitet 04.11.2025 20:16:28

A use-after-free vulnerability exists in the way Foxit Reader 12.1.2.15356 handles 3D annotations. A specially crafted Javascript code inside a malicious PDF document can trigger reuse of a previously freed object, which can lead to memory corruption...

  • EPSS 0.03%
  • Veröffentlicht 09.11.2022 21:15:17
  • Zuletzt bearbeitet 01.05.2025 16:15:24

An Uncontrolled Search Path Element in Foxit Software released Foxit Reader v11.2.118.51569 allows attackers to escalate privileges when searching for DLL libraries without specifying an absolute path.

  • EPSS 0.02%
  • Veröffentlicht 11.08.2021 22:15:09
  • Zuletzt bearbeitet 21.11.2024 06:17:32

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows SQL Injection via crafted data at the end of a string.

  • EPSS 0.03%
  • Veröffentlicht 11.08.2021 22:15:08
  • Zuletzt bearbeitet 21.11.2024 06:17:30

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows memory corruption during conversion of a PDF document to a different document format.

  • EPSS 0.02%
  • Veröffentlicht 11.08.2021 22:15:08
  • Zuletzt bearbeitet 21.11.2024 06:17:30

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows stack consumption via recursive function calls during the handling of XFA forms or link objects.

  • EPSS 0.04%
  • Veröffentlicht 11.08.2021 22:15:08
  • Zuletzt bearbeitet 21.11.2024 06:17:31

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows attackers to delete arbitrary files (during uninstallation) via a symlink.

  • EPSS 0.03%
  • Veröffentlicht 11.08.2021 22:15:08
  • Zuletzt bearbeitet 21.11.2024 06:17:31

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows DLL hijacking, aka CNVD-C-2021-68000 and CNVD-C-2021-68502.

  • EPSS 0.02%
  • Veröffentlicht 11.08.2021 22:15:08
  • Zuletzt bearbeitet 21.11.2024 06:17:31

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because the extractPages pathname is not validated.