Vulnerabilidades en Foxit

776 resultados
Análisis Vexday

Com 776 CVEs catalogadas e nenhuma atualmente listada no catálogo KEV da CISA, o Foxit apresenta taxa de exploração ativa abaixo da média geral do catálogo, o que sugere menor pressão imediata de ameaças confirmadas em campo. No entanto, o escore EPSS de 0,8948 associado a CVE-2021-34833 indica altíssima probabilidade estatística de exploração para essa vulnerabilidade específica, merecendo atenção prioritária mesmo na ausência de confirmação formal no KEV. O tipo de falha mais recorrente é CWE-416 (use-after-free), categoria historicamente propícia à execução de código arbitrário e frequentemente visada em leitores e editores de PDF. A existência de PoCs públicas para duas vulnerabilidades reforça a necessidade de manter patches aplicados, ainda que o volume de novas CVEs nos últimos 90 dias esteja zerado.

CVE-2024-9252LOWFoxit PDF Reader AcroForm Use-After-Free Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-38114HIGHFoxit PDF Reader AcroForm Doc Object Use-After-Free Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-42090LOWFoxit PDF Reader XFA Doc Object Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42093LOWFoxit PDF Reader Annotation Use-After-Free Information Disclosure VulnerabilityEPSS 0.4%CVE-2024-9247HIGHFoxit PDF Reader Annotation Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-38113LOWFoxit PDF Reader Annotation Use-After-Free Information Disclosure VulnerabilityEPSS 0.4%CVE-2024-9253LOWFoxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2024-9256LOWFoxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-51551HIGHFoxit PDF Reader AcroForm Signature Use-After-Free Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-51552HIGHFoxit PDF Reader AcroForm Signature Use-After-Free Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-51556HIGHFoxit PDF Reader AcroForm Doc Use-After-Free Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-51557HIGHFoxit PDF Reader AcroForm Doc Use-After-Free Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-51560HIGHFoxit PDF Reader Annotation Type Confusion Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-51549HIGHFoxit PDF Reader AcroForm Doc Object Use-After-Free Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-38119HIGHFoxit PDF Reader AcroForm signature Out-Of-Bounds Read Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-38118HIGHFoxit PDF Reader AcroForm Doc Object Out-Of-Bounds Write Remote Code Execution VulnerabilityEPSS 0.4%CVE-2023-51554LOWFoxit PDF Reader Signature Use-After-Free Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42098LOWFoxit PDF Reader Annotation Use-After-Free Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-51561LOWFoxit PDF Reader PDF File Parsing Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%CVE-2023-42095LOWFoxit PDF Reader AcroForm Out-Of-Bounds Read Information Disclosure VulnerabilityEPSS 0.4%