logo

Multiple Vulnerabilities in Foxit PDF Reader and Editor Could Allow for Arbitrary Code Execution

ID: 2c3ce429-e088-5996-a631-8fdd2ed47e08

STIX ID: report--2c3ce429-e088-5996-a631-8fdd2ed47e08

Feed Name: CISecurity.org Advisories

Threat Score
72/100

Date Published: 2024-09-27

Date Updated: 2026-04-27

...
...

Multiple vulnerabilities were discovered in Foxit PDF Reader and Editor — including use-after-free, out-of-bounds read/write, privilege escalation, side-loading, and null pointer dereference issues — that could allow arbitrary code execution or denial of service; several CVEs are cited (CVE-2024-28888, CVE-2024-7725, CVE-2024-38393, CVE-2024-41605) and exploitation impact depends on the privileges of the logged-on user and weaknesses in the updater/installer validation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.