In Foxit PDF Reader and Editor before 2024.1, Local Privilege Escalation could occur during update checks because weak permissions on the update-service folder allow attackers to place crafted DLL files there.
2024-04-15T06:15:07.863
2025-07-09T14:52:10.653
Analyzed
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | foxit | pdf_editor | < 10.1.12.37872 | Yes |
Application | foxit | pdf_editor | < 11.2.8.53842 | Yes |
Application | foxit | pdf_editor | < 12.1.4.15400 | Yes |
Application | foxit | pdf_editor | < 13.0.1.21693 | Yes |
Application | foxit | pdf_editor | < 2023.3.0.23028 | Yes |
Application | foxit | pdf_reader | < 2023.3.0.23028 | Yes |
Operating System | microsoft | windows | - | No |