foxitsoftware kayıtları
foxitsoftware üreticisine ait 798 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 3 · %0,4
- Pre-auth RCE
- 356
- Düzeltme kaydı olan
- %0,1
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-416 Use After Free302
- CWE-125 Out-of-bounds Read150
- CWE-787 Out-of-bounds Write81
- CWE-843 Access of Resource Using Incompatible Type ('Type Confusion')77
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer25
- CWE-476 NULL Pointer Dereference15
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
798 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
60Bu hafta | CVE-2021-34833İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.foxit · pdf reader · CWE-416 | Yüksek7,8 | — | %95,7 | 4 Ağu 2021 |
56Planlayın | CVE-2020-13557İstismar yok | A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527.foxitsoftware · foxit reader · CWE-416 | Yüksek8,8 | — | %70,4 | 22 Ara 2020 |
55Planlayın | CVE-2020-13548İstismar yok | In Foxit Reader 10.1.0.37527, a specially crafted PDF document can trigger reuse of previously free memory which can lead to arbitrary code foxitsoftware · foxit reader · CWE-416 | Yüksek8,8 | — | %65,8 | 10 Şub 2021 |
54Planlayın | CVE-2018-9958Silahlaştırılmış | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049.foxitsoftware · foxit reader · CWE-416 | Yüksek8,8 | — | %62,3 | 17 May 2018 |
52Planlayın | CVE-2009-0836Silahlaştırılmış | Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmation before performing foxitsoftware · reader · CWE-119 | Kritik10,0 | — | %40,9 | 10 Mar 2009 |
49Planlayın | CVE-2021-34847İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.foxit · pdf reader · CWE-416 | Yüksek7,8 | — | %61,6 | 4 Ağu 2021 |
47Planlayın | CVE-2018-20247İstismar yok | In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing a recursive page tree foxitsoftware · quick pdf library · CWE-121 | Yüksek7,8 | — | %54,5 | 24 Ara 2018 |
45Planlayın | CVE-2018-9948Silahlaştırılmış | This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935.foxitsoftware · foxit reader · CWE-824 | Orta6,5 | — | %63,1 | 17 May 2018 |
44Planlayın | CVE-2018-3924İstismar yok | An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.5096.foxitsoftware · foxit reader · CWE-416 | Yüksek7,8 | — | %44,1 | 1 Ağu 2018 |
44Planlayın | CVE-2008-1104İstismar yok | Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a craffoxitsoftware · foxit reader · CWE-119 | Kritik9,3 | — | %22,7 | 21 May 2008 |
43Planlayın | CVE-2020-14425Kavram kanıtı | Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API.foxitsoftware · foxit reader | Yüksek7,8 | — | %41,1 | 2 Kas 2020 |
43Planlayın | CVE-2008-0151Kavram kanıtı | Heap-based buffer overflow in Foxit WAC Server 2.1.0.910, 2.0 Build 3503, and earlier allows remote attackers to cause a denial of service (foxitsoftware · wac server · CWE-119 | Kritik10,0 | — | %8,5 | 8 Oca 2008 |
42Planlayın | CVE-2018-3956İstismar yok | An exploitable out-of-bounds read vulnerability exists in the handling of certain XFA element attributes of Foxit Software's PDF Reader versfoxitsoftware · phantompdf · CWE-125 | Yüksek7,1 | — | %46,0 | 30 Oca 2019 |
42Planlayın | CVE-2021-34850İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.foxit · pdf reader · CWE-416 | Yüksek7,8 | — | %38,3 | 4 Ağu 2021 |
42Planlayın | CVE-2008-7031Kavram kanıtı | Heap-based buffer overflow in Foxit Remote Access Server (aka WAC Server) 2.0 Build 3503 allows remote attackers to cause a denial of servicfoxitsoftware · wac server · CWE-119 | Kritik10,0 | — | %8,3 | 24 Ağu 2009 |
42Planlayın | CVE-2008-7225İstismar yok | Heap-based buffer overflow in Foxit Remote Access Server (aka WAC Server) 2.0 Build 3503 allows remote attackers to cause a denial of servicfoxitsoftware · wac server · CWE-119 | Kritik10,0 | — | %5,5 | 14 Eyl 2009 |
41Planlayın | CVE-2018-3843İstismar yok | An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotatifoxitsoftware · foxit reader · CWE-704 | Yüksek8,8 | — | %21,6 | 19 Nis 2018 |
40Planlayın | CVE-2018-14442Kavram kanıtı | Foxit Reader before 9.2 and PhantomPDF before 9.2 have a Use-After-Free that leads to Remote Code Execution, aka V-88f4smlocs.foxitsoftware · foxit reader · CWE-416 | Kritik9,8 | — | %4,7 | 20 Tem 2018 |
40Planlayın | CVE-2018-17609İstismar yok | Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becausfoxitsoftware · phantompdf · CWE-416 | Kritik9,8 | — | %3,2 | 28 Eyl 2018 |
40Planlayın | CVE-2018-17608İstismar yok | Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becausfoxitsoftware · phantompdf · CWE-416 | Kritik9,8 | — | %3,2 | 28 Eyl 2018 |
40Planlayın | CVE-2018-17610İstismar yok | Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becausfoxitsoftware · phantompdf · CWE-416 | Kritik9,8 | — | %3,2 | 28 Eyl 2018 |
40Planlayın | CVE-2018-17607İstismar yok | Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becausfoxitsoftware · phantompdf · CWE-416 | Kritik9,8 | — | %3,2 | 28 Eyl 2018 |
40Planlayın | CVE-2018-17611İstismar yok | Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becausfoxitsoftware · phantompdf · CWE-416 | Kritik9,8 | — | %3,2 | 28 Eyl 2018 |
40Planlayın | CVE-2020-26534İstismar yok | An issue was discovered in Foxit Reader and PhantomPDF before 10.1.foxitsoftware · foxit reader · CWE-416 | Kritik9,8 | — | %2,4 | 2 Eki 2020 |
40Planlayın | CVE-2018-21242İstismar yok | An issue was discovered in Foxit PhantomPDF before 8.3.6.foxitsoftware · phantompdf · CWE-200 | Kritik9,8 | — | %2,2 | 4 Haz 2020 |
- CVE-2021-3483360Bu hafta
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.
YüksekCVSS 7,8İstismar yokEPSS %96foxit · pdf reader4 Ağu 2021
- CVE-2020-1355756Planlayın
A use after free vulnerability exists in the JavaScript engine of Foxit Software’s Foxit PDF Reader, version 10.1.0.37527.
YüksekCVSS 8,8İstismar yokEPSS %70foxitsoftware · foxit reader22 Ara 2020
- CVE-2020-1354855Planlayın
In Foxit Reader 10.1.0.37527, a specially crafted PDF document can trigger reuse of previously free memory which can lead to arbitrary code
YüksekCVSS 8,8İstismar yokEPSS %66foxitsoftware · foxit reader10 Şub 2021
- CVE-2018-995854Planlayın
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.1.1049.
YüksekCVSS 8,8SilahlaştırılmışEPSS %62foxitsoftware · foxit reader17 May 2018
- CVE-2009-083652Planlayın
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 1120 and 1301, does not require user confirmation before performing
KritikCVSS 10,0SilahlaştırılmışEPSS %41foxitsoftware · reader10 Mar 2009
- CVE-2021-3484749Planlayın
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.
YüksekCVSS 7,8İstismar yokEPSS %62foxit · pdf reader4 Ağu 2021
- CVE-2018-2024747Planlayın
In Foxit Quick PDF Library (all versions prior to 16.12), issue where loading a malformed or malicious PDF containing a recursive page tree
YüksekCVSS 7,8İstismar yokEPSS %54foxitsoftware · quick pdf library24 Ara 2018
- CVE-2018-994845Planlayın
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935.
OrtaCVSS 6,5SilahlaştırılmışEPSS %63foxitsoftware · foxit reader17 May 2018
- CVE-2018-392444Planlayın
An exploitable use-after-free vulnerability exists in the JavaScript engine of Foxit Software's Foxit PDF Reader version 9.1.5096.
YüksekCVSS 7,8İstismar yokEPSS %44foxitsoftware · foxit reader1 Ağu 2018
- CVE-2008-110444Planlayın
Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a craf
KritikCVSS 9,3İstismar yokEPSS %23foxitsoftware · foxit reader21 May 2008
- CVE-2020-1442543Planlayın
Foxit Reader before 10.0 allows Remote Command Execution via the app.opencPDFWebPage JavsScript API.
YüksekCVSS 7,8Kavram kanıtıEPSS %41foxitsoftware · foxit reader2 Kas 2020
- CVE-2008-015143Planlayın
Heap-based buffer overflow in Foxit WAC Server 2.1.0.910, 2.0 Build 3503, and earlier allows remote attackers to cause a denial of service (
KritikCVSS 10,0Kavram kanıtıEPSS %9foxitsoftware · wac server8 Oca 2008
- CVE-2018-395642Planlayın
An exploitable out-of-bounds read vulnerability exists in the handling of certain XFA element attributes of Foxit Software's PDF Reader vers
YüksekCVSS 7,1İstismar yokEPSS %46foxitsoftware · phantompdf30 Oca 2019
- CVE-2021-3485042Planlayın
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PDF Reader 11.0.0.49893.
YüksekCVSS 7,8İstismar yokEPSS %38foxit · pdf reader4 Ağu 2021
- CVE-2008-703142Planlayın
Heap-based buffer overflow in Foxit Remote Access Server (aka WAC Server) 2.0 Build 3503 allows remote attackers to cause a denial of servic
KritikCVSS 10,0Kavram kanıtıEPSS %8foxitsoftware · wac server24 Ağu 2009
- CVE-2008-722542Planlayın
Heap-based buffer overflow in Foxit Remote Access Server (aka WAC Server) 2.0 Build 3503 allows remote attackers to cause a denial of servic
KritikCVSS 10,0İstismar yokEPSS %5foxitsoftware · wac server14 Eyl 2009
- CVE-2018-384341Planlayın
An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotati
YüksekCVSS 8,8İstismar yokEPSS %22foxitsoftware · foxit reader19 Nis 2018
- CVE-2018-1444240Planlayın
Foxit Reader before 9.2 and PhantomPDF before 9.2 have a Use-After-Free that leads to Remote Code Execution, aka V-88f4smlocs.
KritikCVSS 9,8Kavram kanıtıEPSS %5foxitsoftware · foxit reader20 Tem 2018
- CVE-2018-1760940Planlayın
Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus
KritikCVSS 9,8İstismar yokEPSS %3foxitsoftware · phantompdf28 Eyl 2018
- CVE-2018-1760840Planlayın
Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus
KritikCVSS 9,8İstismar yokEPSS %3foxitsoftware · phantompdf28 Eyl 2018
- CVE-2018-1761040Planlayın
Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus
KritikCVSS 9,8İstismar yokEPSS %3foxitsoftware · phantompdf28 Eyl 2018
- CVE-2018-1760740Planlayın
Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus
KritikCVSS 9,8İstismar yokEPSS %3foxitsoftware · phantompdf28 Eyl 2018
- CVE-2018-1761140Planlayın
Foxit PhantomPDF and Reader before 9.3 allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) becaus
KritikCVSS 9,8İstismar yokEPSS %3foxitsoftware · phantompdf28 Eyl 2018
- CVE-2020-2653440Planlayın
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
KritikCVSS 9,8İstismar yokEPSS %2foxitsoftware · foxit reader2 Eki 2020
- CVE-2018-2124240Planlayın
An issue was discovered in Foxit PhantomPDF before 8.3.6.
KritikCVSS 9,8İstismar yokEPSS %2foxitsoftware · phantompdf4 Haz 2020