Vulnerabilities > CVE-2019-14208 - NULL Pointer Dereference vulnerability in Foxitsoftware Phantompdf

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
foxitsoftware
CWE-476

Summary

An issue was discovered in Foxit PhantomPDF before 8.3.10. The application could be exposed to a NULL pointer dereference and crash when getting a PDF object from a document, or parsing a certain portfolio that contains a null dictionary.

Vulnerable Configurations

Part Description Count
Application
Foxitsoftware
103
OS
Microsoft
1

Common Weakness Enumeration (CWE)