cbcvebase.
CVE-2023-33240
published 2023-05-19

CVE-2023-33240: Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and…

high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and 10.1.11.37866 and earlier) on Windows allows Local Privilege Escalation when installed to a non-default directory because unprivileged users have access to an executable file of a system service. This is fixed in 12.1.2.

Affected

4 ranges
VendorProductVersion rangeFixed in
foxitpdf_editor<= 10.1.11.37866
foxitpdf_editor11.0.0 – 11.2.5.53785
foxitpdf_editor12.0.0 – 12.1.1.15289
foxitpdf_reader<= 12.1.1.15289