Remote Code Execution in Foxit Studio Photo 3.6.6.931 Vulnerability
CVE-2021-31438
What is CVE-2021-31438?
This vulnerability in Foxit Studio Photo versions prior to 3.6.6.931 allows remote attackers to execute arbitrary code on vulnerable installations. The flaw resides in the application's handling of PSP files, stemming from inadequate validation of user-supplied data length before copying it to a fixed-length stack-based buffer. To exploit this vulnerability, user interaction is necessary, as the targeted user must either open a malicious file or visit a compromised web page. Successful exploitation allows attackers to execute code in the current process context, potentially leading to further compromise.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Studio Photo 3.6.6.931
References
EPSS Score
6% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved