KLA10026
OAF vulnerability in Foxit
Обновлено: 17/06/2019
Дата обнаружения
24/05/2014
Уровень угрозы
High
Описание

An XSS vulnerability was found in Foxit Reader, Foxit Enterprise Reader and Foxit PhantomPDF. By exploiting this vulnerability malicious users can overwrite registry entries and load malicious files. This vulnerability can be exploited locally at a point related to the Recent Documents section of the Start Page.

Пораженные продукты

Foxit Reader versions 6.2.0.0429 and earlier
Foxit Enterprise Reader versions 6.2.0.0429 and earlier
Foxit PhantomPDF versions 6.2.0.0429 and earlier

Решение

Update to latest version
Foxit PDF Reader

Первичный источник обнаружения
Foxit bulletin
Связанные продукты
Foxit Reader
Foxit Phantom PDF Suite