CVEs (372)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.2.0.2051. User interaction is required to exploit this vulnerability in that the target must visit a mali...Show more |
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.0.14878. User interaction is required to exploit this vulnerability in that the target must visit a mal...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfMay 13, 2026 Jul 7, 2017 N/A· v4 7.3 HIGH· v3 9.3 HIGH· v2 Foxit Reader before 8.3.1 and PhantomPDF before 8.3.1 have an Arbitrary Write vulnerability, which allows remote attackers to execute arbitrary code via a crafted document. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 13, 2026 May 3, 2017 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or possibly execute arbitrary code via a crafted font in a PDF document. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 13, 2026 May 3, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or possibly execute arbitrary code via a crafted font in a PDF document. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 13, 2026 May 3, 2017 N/A· v4 8.8 HIGH· v3 6.8 MEDIUM· v2 Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain sensitive information or possibly execute arbitrary code via a crafted font in a PDF document. |
Heap-based buffer overflow in the CreateFXPDFConvertor function in ConvertToPdf_x86.dll in Foxit Reader 7.3.4.311 allows remote attackers to execute arbitrary code via a large SamplesPerPixel value in a crafted TIFF imag...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfMay 13, 2026 Mar 14, 2017 N/A· v4 4.7 MEDIUM· v3 2.6 LOW· v2 The ConvertToPDF plugin in Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash)...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfMay 13, 2026 Jan 23, 2017 N/A· v4 8.1 HIGH· v3 5.8 MEDIUM· v2 The ConvertToPDF plugin in Foxit Reader before 8.2 and PhantomPDF before 8.2 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 The ConvertToPDF plugin in Foxit Reader and PhantomPDF before 7.3.4 on Windows, when the gflags app is enabled, allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafte...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Use-after-free vulnerability in the XFA forms handling functionality in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via a crafted remerge call. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via an object with a revision number of -1 in a PDF document. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 5.5 MEDIUM· v3 4.3 MEDIUM· v2 Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, which allows remote attackers to cause a denial of service (application hang) via a crafted PDF. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Foxit Reader and PhantomPDF before 7.3.4 on Windows allow remote attackers to cause a denial of service (application crash) via a crafted content stream. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to cause a denial of service (application crash) via unspecified vectors. |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Apr 22, 2016 N/A· v4 7.8 HIGH· v3 6.8 MEDIUM· v2 Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via a crafted FlateDecode stream in a PDF document. |
The Foxit Cloud Update Service (FoxitCloudUpdateService) in Foxit Reader 6.1 through 6.2.x and 7.x before 7.2.2, when an update to the Cloud plugin is available, allows local users to gain privileges by writing crafted d...Show more |
1Foxitsoftware 2Foxit Reader PhantompdfMay 6, 2026 Dec 16, 2015 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Multiple use-after-free vulnerabilities in the (1) Print method and (2) App object handling in Foxit Reader before 7.2.2 and Foxit PhantomPDF before 7.2.2 allow remote attackers to execute arbitrary code via a crafted PD...Show more |
1Foxitsoftware 3Enterprise Reader Foxit ReaderPhantompdfMay 6, 2026 May 1, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via vectors related to digital signatures. |
1Foxitsoftware 3Enterprise Reader Foxit ReaderPhantompdfMay 6, 2026 May 1, 2015 N/A· v4 N/A· v3 4.3 MEDIUM· v2 Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file. |