Foxit PDF Reader and PDF Editor before 11.1 on macOS allow remote attackers to execute arbitrary code via xfa.host.gotoURL in the XFA API.
2022-01-04T15:15:07.943
2024-11-21T06:33:24.863
Modified
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | foxit | pdf_editor | < 11.1 | Yes |
Application | foxit | pdf_reader | < 11.1 | Yes |
Operating System | apple | macos | - | No |