Skip to content
Noroxi

foxitsoftware records

798 published records for vendor foxitsoftware.

Researcher profile

Entered KEV
0 · 0%
Weaponized
3 · 0.4%
Pre-auth RCE
356
With a fix record
0.1%
Median publish → KEV
No record has entered KEV

All records

798 records
  • CVE-2021-34833
    60This week

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.

    HighCVSS 7.8No exploitEPSS 96%

    foxit · pdf readerAug 4, 2021

  • A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527.

    HighCVSS 8.8No exploitEPSS 70%

    foxitsoftware · foxit readerDec 22, 2020

  • In Foxit Reader 10.1.0.37527, a specially crafted PDF document can trigger reuse of previously free memory which can lead to arbitrary code

    HighCVSS 8.8No exploitEPSS 66%

    foxitsoftware · foxit readerFeb 10, 2021

  • This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049.

    HighCVSS 8.8WeaponizedEPSS 62%

    foxitsoftware · foxit readerMay 17, 2018

  • Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmation before performing

    CriticalCVSS 10.0WeaponizedEPSS 41%

    foxitsoftware · readerMar 10, 2009

  • This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.

    HighCVSS 7.8No exploitEPSS 62%

    foxit · pdf readerAug 4, 2021

  • In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing a recursive page tree

    HighCVSS 7.8No exploitEPSS 54%

    foxitsoftware · quick pdf libraryDec 24, 2018

  • This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935.

    MediumCVSS 6.5WeaponizedEPSS 63%

    foxitsoftware · foxit readerMay 17, 2018

  • An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.5096.

    HighCVSS 7.8No exploitEPSS 44%

    foxitsoftware · foxit readerAug 1, 2018

  • Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a craf

    CriticalCVSS 9.3No exploitEPSS 23%

    foxitsoftware · foxit readerMay 21, 2008

  • Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API.

    HighCVSS 7.8Proof of conceptEPSS 41%

    foxitsoftware · foxit readerNov 2, 2020

  • Heap-based buffer overflow in Foxit WAC Server 2.1.0.910, 2.0 Build 3503, and earlier allows remote attackers to cause a denial of service (

    CriticalCVSS 10.0Proof of conceptEPSS 9%

    foxitsoftware · wac serverJan 8, 2008

  • An exploitable out-of-bounds read vulnerability exists in the handling of certain XFA element attributes of Foxit Software's PDF Reader vers

    HighCVSS 7.1No exploitEPSS 46%

    foxitsoftware · phantompdfJan 30, 2019

  • This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.

    HighCVSS 7.8No exploitEPSS 38%

    foxit · pdf readerAug 4, 2021

  • Heap-based buffer overflow in Foxit Remote Access Server (aka WAC Server) 2.0 Build 3503 allows remote attackers to cause a denial of servic

    CriticalCVSS 10.0Proof of conceptEPSS 8%

    foxitsoftware · wac serverAug 24, 2009

  • Heap-based buffer overflow in Foxit Remote Access Server (aka WAC Server) 2.0 Build 3503 allows remote attackers to cause a denial of servic

    CriticalCVSS 10.0No exploitEPSS 5%

    foxitsoftware · wac serverSep 14, 2009

  • An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotati

    HighCVSS 8.8No exploitEPSS 22%

    foxitsoftware · foxit readerApr 19, 2018

  • Foxit Reader before 9.2 and PhantomPDF before 9.2 have a Use-After-Free that leads to Remote Code Execution, aka V-88f4smlocs.

    CriticalCVSS 9.8Proof of conceptEPSS 5%

    foxitsoftware · foxit readerJul 20, 2018

  • Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus

    CriticalCVSS 9.8No exploitEPSS 3%

    foxitsoftware · phantompdfSep 28, 2018

  • Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus

    CriticalCVSS 9.8No exploitEPSS 3%

    foxitsoftware · phantompdfSep 28, 2018

  • Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus

    CriticalCVSS 9.8No exploitEPSS 3%

    foxitsoftware · phantompdfSep 28, 2018

  • Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus

    CriticalCVSS 9.8No exploitEPSS 3%

    foxitsoftware · phantompdfSep 28, 2018

  • Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus

    CriticalCVSS 9.8No exploitEPSS 3%

    foxitsoftware · phantompdfSep 28, 2018

  • An issue was discovered in Foxit Reader and PhantomPDF before 10.1.

    CriticalCVSS 9.8No exploitEPSS 2%

    foxitsoftware · foxit readerOct 2, 2020

  • An issue was discovered in Foxit PhantomPDF before 8.3.6.

    CriticalCVSS 9.8No exploitEPSS 2%

    foxitsoftware · phantompdfJun 4, 2020