CVE-2021-45980PDF Editor vulnerability

3 documents3 sources
Severity
7.8HIGHNVD
EPSS
0.8%
top 26.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 4
Latest updateJan 5

Description

Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via getURL in the JavaScript API.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

NVDfoxit/pdf_editor< 11.1
NVDfoxit/pdf_reader< 11.1

🔴Vulnerability Details

2
GHSA
GHSA-g4fv-j2jw-rrw2: Foxit PDF Reader and PDF Editor before 112022-01-05
CVEList
CVE-2021-45980: Foxit PDF Reader and PDF Editor before 112022-01-04
CVE-2021-45980 — Foxit PDF Editor vulnerability | cvebase