Remote Code Execution in Foxit Studio Photo
CVE-2021-31435
7.8HIGH
What is CVE-2021-31435?
This vulnerability in Foxit Studio Photo 3.6.6.931 permits remote attackers to execute arbitrary code by exploiting a flaw in the parsing of CMP files. The exploitation requires user interaction, such as visiting a malicious website or opening a harmful file. The vulnerability stems from improper memory initialization, allowing attackers to manipulate executable code within the context of the affected process.
Affected Version(s)
Studio Photo 3.6.6.931