cbcvebase.
CVE-2019-20836
published 2020-06-04

CVE-2019-20836: An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has mishandling of cloud credentials, as demonstrated by Google Drive.

high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has mishandling of cloud credentials, as demonstrated by Google Drive.

Affected

3 ranges
VendorProductVersion rangeFixed in
foxitsoftwarephantompdf< 9.59.5
foxitsoftwarereader< 9.59.5
linuxlinux_kernel>= 0 < 4.4.0-157.1854.4.0-157.185

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
osv8.1HIGH