Foxitsoftware Pdf Editor vulnerabilities
28 known vulnerabilities affecting foxitsoftware/pdf_editor.
Total CVEs
28
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH26
Vulnerabilities
Page 1 of 2
CVE-2021-38563CRITICALCVSS 9.8≤ 11.0.0.05102021-08-11
CVE-2021-38563 [CRITICAL] CWE-129 CVE-2021-38563: An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It mishandle
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It mishandles situations in which an array size (derived from a /Size entry) is smaller than the maximum indirect object number, and thus there is an attempted incorrect array access (leading to a NULL pointer dereference, or out-of-bounds read or write).
nvd
CVE-2021-38564CRITICALCVSS 9.1fixed in 11.0.12021-08-11
CVE-2021-38564 [CRITICAL] CWE-125 CVE-2021-38564: An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows an
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows an out-of-bounds read via util.scand.
nvd
CVE-2021-38565HIGHCVSS 7.5fixed in 11.0.12021-08-11
CVE-2021-38565 [HIGH] CVE-2021-38565: An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows wr
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows writing to arbitrary files via submitForm.
nvd
CVE-2021-38567HIGHCVSS 7.5≤ 11.0.0.05102021-08-11
CVE-2021-38567 [HIGH] CWE-476 CVE-2021-38567: An issue was discovered in Foxit PDF Editor before 11.0.1 and PDF Reader before 11.0.1 on macOS. It
An issue was discovered in Foxit PDF Editor before 11.0.1 and PDF Reader before 11.0.1 on macOS. It mishandles missing dictionary entries, leading to a NULL pointer dereference, aka CNVD-C-2021-95204.
nvd
CVE-2021-38566HIGHCVSS 7.5fixed in 11.0.12021-08-11
CVE-2021-38566 [HIGH] CWE-674 CVE-2021-38566: An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows st
An issue was discovered in Foxit PDF Reader before 11.0.1 and PDF Editor before 11.0.1. It allows stack consumption during recursive processing of embedded XML nodes.
nvd
CVE-2021-34839HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34839 [HIGH] CWE-416 CVE-2021-34839: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34842HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34842 [HIGH] CWE-416 CVE-2021-34842: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34852HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34852 [HIGH] CWE-416 CVE-2021-34852: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34849HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34849 [HIGH] CWE-416 CVE-2021-34849: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34840HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34840 [HIGH] CWE-416 CVE-2021-34840: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34835HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34835 [HIGH] CWE-416 CVE-2021-34835: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34846HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34846 [HIGH] CWE-416 CVE-2021-34846: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34853HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34853 [HIGH] CWE-416 CVE-2021-34853: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34847HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34847 [HIGH] CWE-416 CVE-2021-34847: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34848HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34848 [HIGH] CWE-416 CVE-2021-34848: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34832HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34832 [HIGH] CWE-416 CVE-2021-34832: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the delay property. The issue results from t
nvd
CVE-2021-34834HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34834 [HIGH] CWE-416 CVE-2021-34834: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34843HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34843 [HIGH] CWE-416 CVE-2021-34843: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34833HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34833 [HIGH] CWE-416 CVE-2021-34833: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
CVE-2021-34837HIGHCVSS 7.8≤ 10.1.4.37651v11.0.0.498932021-08-04
CVE-2021-34837 [HIGH] CWE-416 CVE-2021-34837: This vulnerability allows remote attackers to execute arbitrary code on affected installations of Fo
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of Annotation objects. The issue results from t
nvd
1 / 2Next →