Remote Code Execution Vulnerability in Foxit PDF Reader AcroForm
CVE-2024-30346

7.8HIGH

Key Information:

Vendor

Foxit

Vendor
CVE Published:
2 April 2024

What is CVE-2024-30346?

The vulnerability in Foxit PDF Reader arises from a flaw in the management of Doc objects within AcroForms. This oversight prevents proper validation of an object’s existence prior to executing operations, which poses a serious threat. Remote attackers can exploit this flaw, demanding user interaction either by visiting a malicious website or opening a harmful file, leading to arbitrary code execution within the context of the running process. Such exploitation can compromise user data and system integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

PDF Reader 2023.3.0.23028

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.