Arbitrary Code Execution Vulnerability in Foxit Studio Photo by Foxit Software
CVE-2020-17426
7.8HIGH
What is CVE-2020-17426?
This vulnerability in Foxit Studio Photo versions prior to 3.6.6.922 allows remote attackers to execute arbitrary code by enticing users to open malicious CR2 files or visit compromised webpages. The flaw stems from insufficient validation of user-supplied data, leading to potential memory corruption that enables an attacker to execute code within the context of the application process.
Affected Version(s)
Studio Photo 3.6.6.922