Vulnerability index

Browse CVEs

732 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Foxit Reader HIGH 8.8
CVE-2020-13560

A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527. A specially crafted PDF do…

No fix yet
Fix from $1,950 2020-12-22
Foxit Reader HIGH 8.8
CVE-2020-13570

A use-after-free vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 10.1.0.37527. A specially crafted PDF document…

No fix yet
Fix from $1,950 2020-12-22
Foxit Reader MEDIUM 5.5
CVE-2020-28203

An issue was discovered in Foxit Reader and PhantomPDF 10.1.0.37527 and earlier. There is a null pointer access/dereference while opening a crafted P…

Fix: 10.1.0.37527+
Fix from $1,600 2020-12-15
Foxit Reader HIGH 7.8
CVE-2020-14425EPSS 41%

Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API. An attacker can execute local files and bypass t…

Fix: 10.0.0+
Fix from $1,950 2020-11-02
3d HIGH 7.8
CVE-2020-17412

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is …

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
3d HIGH 7.8
CVE-2020-17413

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is …

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
Foxit Reader HIGH 7.8
CVE-2020-17414

This vulnerability allows local attackers to escalate privileges on affected installations of Foxit Reader 10.0.0.35798. An attacker must first obtai…

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
Foxit Reader HIGH 7.8
CVE-2020-17415

This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PhantomPDF 10.0.0.35798. An attacker must first o…

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
Foxit Reader HIGH 7.8
CVE-2020-17416EPSS 9%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.0.35798. User interaction is requ…

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
Foxit Reader HIGH 7.8
CVE-2020-17417EPSS 9%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.0.1.35811. User interaction is requ…

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
Foxit Reader HIGH 7.8
CVE-2020-17410EPSS 9%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is …

Fix: after 10.0.1.35811
Fix from $1,950 2020-10-13
Foxit Reader CRITICAL 9.8
CVE-2020-26534

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. There is an Opt object use-after-free related to Field::ClearItems and Field::Del…

Fix: 10.1+
Fix from $2,300 2020-10-02
Foxit Reader CRITICAL 9.8
CVE-2020-26535

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. If TslAlloc attempts to allocate thread local storage but obtains an unacceptable…

Fix: 10.1+
Fix from $2,300 2020-10-02
Foxit Reader CRITICAL 9.8
CVE-2020-26537

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. In a certain Shading calculation, the number of outputs is unequal to the number …

Fix: 10.1+
Fix from $2,300 2020-10-02
Foxit Reader CRITICAL 9.8
CVE-2020-26539

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. When there is a multiple interpretation error for /V (in the Additional Action an…

Fix: 10.1+
Fix from $2,300 2020-10-02
Foxit Reader HIGH 7.8
CVE-2020-26538

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. It allows attackers to execute arbitrary code via a Trojan horse taskkill.exe in …

Fix: 10.1+
Fix from $1,950 2020-10-02
Foxit Reader HIGH 7.5
CVE-2020-26540

An issue was discovered in Foxit Reader and PhantomPDF before 4.1 on macOS. Because the Hardened Runtime protection mechanism is not applied to code …

Fix: 4.1+
Fix from $1,950 2020-10-02
Foxit Reader MEDIUM 5.5
CVE-2020-26536

An issue was discovered in Foxit Reader and PhantomPDF before 10.1. There is a NULL pointer dereference via a crafted PDF document.

Fix: 10.1+
Fix from $1,600 2020-10-02
Phantompdf HIGH 8.8
CVE-2020-12248

In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can execute arbitrary code via a heap-based buffer overflow beca…

Fix: after 10.0.0.35798
Fix from $1,950 2020-09-04
Phantompdf HIGH 8.1
CVE-2020-11493

In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an uninitialized object b…

Fix: after 10.0.0.35798
Fix from $1,950 2020-09-04
Phantompdf HIGH 7.1
CVE-2020-12247

In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information from an out-of-bounds read beca…

Fix: after 10.0.0.35798
Fix from $1,950 2020-09-04
Foxit Studio Photo HIGH 7.8
CVE-2020-17403EPSS 5%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is r…

Fix: after 3.6.6.927
Fix from $1,950 2020-08-25
Foxit Studio Photo HIGH 7.8
CVE-2020-17404EPSS 5%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is r…

Fix: after 3.6.6.927
Fix from $1,950 2020-08-25
Foxit Studio Photo HIGH 7.8
CVE-2020-8869

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.916. User interaction is r…

Fix: after 3.6.6.918
Fix from $1,950 2020-08-20
Foxit Studio Photo HIGH 7.8
CVE-2020-8870

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.916. User interaction is r…

Fix: after 3.6.6.918
Fix from $1,950 2020-08-20
Foxit Studio Photo HIGH 7.8
CVE-2020-15630

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interact…

Fix: after 3.6.6.924
Fix from $1,950 2020-08-20
Phantompdf HIGH 7.8
CVE-2020-15638EPSS 6%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.2.29539. User interaction is r…

Fix: after 10.0.0.35798
Fix from $1,950 2020-08-20
Foxit Studio Photo HIGH 7.8
CVE-2020-15629EPSS 6%

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is r…

Fix: after 3.6.6.924
Fix from $1,950 2020-08-20
Phantompdf HIGH 7.5
CVE-2019-20834

An issue was discovered in Foxit PhantomPDF before 8.3.10. It allows signature validation bypass via a modified file or a file with non-standard sign…

Fix: 8.3.10+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20836

An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It has mishandling of cloud credentials, as demonstrated by Google Drive.

Fix: 9.5+
Fix from $1,950 2020-06-04