Vulnerability index

Browse CVEs

732 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Phantompdf HIGH 7.5
CVE-2019-20837

An issue was discovered in Foxit Reader and PhantomPDF before 9.5. It allows signature validation bypass via a modified file or a file with non-stand…

Fix: 9.5+
Fix from $1,950 2020-06-04
Phantompdf CRITICAL 9.8
CVE-2019-20825

An issue was discovered in Foxit PhantomPDF before 8.3.11. It has an out-of-bounds write when Internet Explorer is used.

Fix: 8.3.11+
Fix from $2,300 2020-06-04
Phantompdf CRITICAL 9.8
CVE-2019-20827

An issue was discovered in Foxit PhantomPDF Mac 3.3 and Foxit Reader for Mac before 3.3. It allows stack consumption because of interaction between I…

Fix: 3.3+
Fix from $2,300 2020-06-04
Phantompdf CRITICAL 9.8
CVE-2019-20830

An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has an out-of-bounds write when Internet Explorer is used.

Fix: 9.6+
Fix from $2,300 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20823

An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a buffer overflow because a looping correction does not occur after JavaScript upda…

Fix: 8.3.11+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20824

An issue was discovered in Foxit PhantomPDF before 8.3.11. It has a NULL pointer dereference via FXSYS_wcslen in an Epub file.

Fix: 8.3.11+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20826

An issue was discovered in Foxit PhantomPDF Mac 3.3 and Foxit Reader for Mac before 3.3. It has a NULL pointer dereference.

Fix: 3.3+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20828

An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has a buffer overflow because a looping correction does not occur after JavaScr…

Fix: 9.6+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20829

An issue was discovered in Foxit Reader and PhantomPDF before 9.6. It has a NULL pointer dereference via FXSYS_wcslen in an Epub file.

Fix: 9.6+
Fix from $1,950 2020-06-04
3d HIGH 7.5
CVE-2019-20831

An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.5.0.20733. It has void data mishandling, causing a crash.

Fix: 9.5.0.20733+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20833

An issue was discovered in Foxit PhantomPDF before 8.3.10. It has mishandling of cloud credentials, as demonstrated by Google Drive.

Fix: 8.3.10+
Fix from $1,950 2020-06-04
Phantompdf CRITICAL 9.8
CVE-2018-21242

An issue was discovered in Foxit PhantomPDF before 8.3.6. It allows Remote Code Execution via a GoToE or GoToR action.

Fix: 8.3.6+
Fix from $2,300 2020-06-04
Phantompdf CRITICAL 9.8
CVE-2018-21244

An issue was discovered in Foxit PhantomPDF before 8.3.6. It allows arbitrary application execution via an embedded executable file in a PDF portfoli…

Fix: 8.3.6+
Fix from $2,300 2020-06-04
Phantompdf MEDIUM 6.5
CVE-2018-21243

An issue was discovered in Foxit PhantomPDF before 8.3.6. It has COM object mishandling when Microsoft Word is used.

Fix: 8.3.6+
Fix from $1,600 2020-06-04
Phantompdf HIGH 7.8
CVE-2018-21241

An issue was discovered in Foxit PhantomPDF before 8.3.6. It has an untrusted search path that allows a DLL to execute remote code.

Fix: 8.3.6+
Fix from $1,950 2020-06-04
E Mail Advertising System HIGH 7.5
CVE-2018-21235

An issue was discovered in Foxit E-mail advertising system before September 2018. It allows authentication bypass and information disclosure, related…

Fix: 09-2018+
Fix from $1,950 2020-06-04
Reader HIGH 7.5
CVE-2018-21236

An issue was discovered in Foxit Reader before 2.4.4. It has a NULL pointer dereference.

Fix: after 2.4.4
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2018-21238

An issue was discovered in Foxit PhantomPDF before 8.3.7. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.

Fix: 8.3.7+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2018-21240

An issue was discovered in Foxit Reader and PhantomPDF before 9.2. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.

Fix: 9.2+
Fix from $1,950 2020-06-04
Phantompdf MEDIUM 5.3
CVE-2018-21237

An issue was discovered in Foxit PhantomPDF before 8.3.7. It allows NTLM credential theft via a GoToE or GoToR action.

Fix: 8.3.7+
Fix from $1,600 2020-06-04
Phantompdf MEDIUM 5.3
CVE-2018-21239

An issue was discovered in Foxit Reader and PhantomPDF before 9.2. It allows NTLM credential theft via a GoToE or GoToR action.

Fix: 9.2+
Fix from $1,600 2020-06-04
Phantompdf CRITICAL 9.8
CVE-2020-13814

An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1. It has a use-after-free via a document that lacks a dictionary.

Fix: 9.7.1+
Fix from $2,300 2020-06-04
Foxit Studio Photo HIGH 7.8
CVE-2020-13812

An issue was discovered in Foxit Studio Photo before 3.6.6.922. It allows local users to gain privileges via a crafted DLL in the current working dir…

Fix: 3.6.6.922+
Fix from $1,950 2020-06-04
Foxit Studio Photo HIGH 7.8
CVE-2020-13813

An issue was discovered in Foxit Studio Photo before 3.6.6.922. It allows local users to gain privileges via a crafted DLL in the current working dir…

Fix: 3.6.6.922+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2020-13815

An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1. It allows stack consumption via a loop of an indirect object reference.

Fix: 9.7.1+
Fix from $1,950 2020-06-04
3d CRITICAL 9.8
CVE-2019-20822

An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.7.0.29430. It has an out-of-bounds write via incorrect image d…

Fix: 9.7.0.29430+
Fix from $2,300 2020-06-04
Foxit Studio Photo HIGH 7.8
CVE-2020-13811

An issue was discovered in Foxit Studio Photo before 3.6.6.922. It has an out-of-bounds write via a crafted TIFF file.

Fix: 3.6.6.922+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20814

An issue was discovered in Foxit PhantomPDF before 8.3.12. It allows memory consumption because data is created for each page of an application level.

Fix: 8.3.12+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20815

An issue was discovered in Foxit PhantomPDF before 8.3.12. It allows stack consumption via nested function calls for XML parsing.

Fix: 8.3.12+
Fix from $1,950 2020-06-04
Phantompdf HIGH 7.5
CVE-2019-20816

An issue was discovered in Foxit PhantomPDF before 8.3.12. It has a NULL pointer dereference during the parsing of file data.

Fix: 8.3.12+
Fix from $1,950 2020-06-04