Use-After-Free Vulnerability in Foxit PDF Reader AcroForm
CVE-2024-9252
7.8HIGH
What is CVE-2024-9252?
The vulnerability arises from improper handling of AcroForms within Foxit PDF Reader, specifically due to a failure to validate the presence of an object before executing operations on it. This oversight permits remote attackers to enact an information disclosure attack by enticing users to visit a carefully crafted malicious webpage or to open a specifically designed harmful file. This flaw can also be combined with other vulnerabilities, potentially allowing attackers to execute arbitrary code in the context of the user's session.