Foxitsoftware Foxit Reader vulnerabilities
372 known vulnerabilities affecting foxitsoftware/foxit_reader.
Total CVEs
372
CISA KEV
0
Public exploits
7
Exploited in wild
0
Severity breakdown
CRITICAL22HIGH264MEDIUM75LOW11
Vulnerabilities
Page 19 of 19
CVE-2021-31444P4LOWCVSS 3.3≤ 10.1.3.375982021-05-07
CVE-2021-31444 [LOW] CWE-125 CVE-2021-31444: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. The is
nvd
CVE-2021-31448P4LOWCVSS 3.3≤ 10.1.3.375982021-05-07
CVE-2021-31448 [LOW] CWE-125 CVE-2021-31448: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. The is
nvd
CVE-2021-31445P4LOWCVSS 3.3≤ 10.1.3.375982021-05-07
CVE-2021-31445 [LOW] CWE-125 CVE-2021-31445: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. The is
nvd
CVE-2021-31443P4LOWCVSS 3.3≤ 10.1.3.375982021-05-07
CVE-2021-31443 [LOW] CWE-125 CVE-2021-31443: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. The is
nvd
CVE-2021-31447P4LOWCVSS 3.3≤ 10.1.3.375982021-05-07
CVE-2021-31447 [LOW] CWE-125 CVE-2021-31447: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. The is
nvd
CVE-2018-19388P4MEDIUMCVSS 5.5v9.3.0.108262018-11-20
CVE-2018-19388 [MEDIUM] CWE-125 CVE-2018-19388: FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (ou
FoxitReader.exe in Foxit Reader 9.3.0.10826 allows remote attackers to cause a denial of service (out-of-bounds read, access violation, and application crash) via TIFF data because of a ConvertToPDF_x86!ReleaseFXURLToHtml issue.
nvd
CVE-2016-4062P4MEDIUMCVSS 5.5≤ 7.3.0.1182016-04-22
CVE-2016-4062 [MEDIUM] CWE-19 CVE-2016-4062: Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, whi
Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, which allows remote attackers to cause a denial of service (application hang) via a crafted PDF.
nvd
CVE-2019-5005P4MEDIUMCVSS 5.5fixed in 9.42019-01-03
CVE-2019-5005 [MEDIUM] CWE-787 CVE-2019-5005: An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. They allowed Denial of
An issue was discovered in Foxit Reader and PhantomPDF before 9.4 on Windows. They allowed Denial of Service (application crash) via image data, because two bytes are written to the end of the allocated memory without judging whether this will cause corruption.
nvd
CVE-2021-27264P4LOWCVSS 3.3≤ 10.1.0.375272021-03-30
CVE-2021-27264 [LOW] CWE-125 CVE-2021-27264: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. Th
nvd
CVE-2021-27266P4LOWCVSS 3.3≤ 10.1.0.375272021-03-30
CVE-2021-27266 [LOW] CWE-125 CVE-2021-27266: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. Th
nvd
CVE-2021-27262P4LOWCVSS 3.3≤ 10.1.0.375272021-03-30
CVE-2021-27262 [LOW] CWE-125 CVE-2021-27262: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. Th
nvd
CVE-2021-27265P4LOWCVSS 3.3≤ 10.1.0.375272021-03-30
CVE-2021-27265 [LOW] CWE-125 CVE-2021-27265: This vulnerability allows remote attackers to disclose sensitive information on affected installatio
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PhantomPDF 10.1.0.37527. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of U3D objects embedded in PDF files. Th
nvd
← Previous19 / 19