Remote Code Execution Vulnerability in Foxit PDF Reader
CVE-2024-30327

7.8HIGH

Key Information:

Vendor

Foxit

Vendor
CVE Published:
3 April 2024

What is CVE-2024-30327?

The vulnerability in Foxit PDF Reader arises from inadequate handling of template objects, specifically due to a failure in validating the existence of said objects before executing operations. This oversight allows remote attackers, who may compel user interaction through malicious web pages or files, to execute arbitrary code within the current process context. As a result, the potential for exploitation exists especially when users inadvertently engage with compromised content, highlighting the need for vigilance in the use of affected software versions.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

PDF Reader 2023.2.0.21408

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.