漏洞类别:Local
漏洞等级:
漏洞信息
Foxit Reader is a multilingual freemium PDF tool that can create, view, edit, digitally sign, and print PDF files.
Foxit Reader is prone to the following vulnerabilities:
A. Foxit Reader launchURL Command Injection Remote Code Execution Vulnerability
B. Foxit Reader saveAs Arbitrary File Write Remote Code Execution Vulnerability
漏洞危害
On successful exploitation it allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader.
解决方案
Solution is not available.
Workaround:
Foxit reader has Safe Reading Mode which is enabled by default to control the running of JavaScript, which can effectively guard against potential vulnerabilities from unauthorized JavaScript action.
0daybank
文章评论