Vulnerabilities > Foxitsoftware > Foxit Reader

DATE CVE VULNERABILITY TITLE RISK
2009-03-10 CVE-2009-0191 Code Injection vulnerability in Foxitsoftware Foxit Reader 2.3/3.0/3.0.2009.1301
Foxit Reader 2.3 before Build 3902 and 3.0 before Build 1506, including 3.0.2009.1301, does not properly handle a JBIG2 symbol dictionary segment with zero new symbols, which allows remote attackers to execute arbitrary code via a crafted PDF file that triggers a dereference of an uninitialized memory location.
network
foxitsoftware CWE-94
critical
9.3
2008-05-21 CVE-2008-1104 Buffer Errors vulnerability in Foxitsoftware Foxit Reader 2.0/2.2/2.3
Stack-based buffer overflow in Foxit Reader before 2.3 build 2912 allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file, related to the util.printf JavaScript function and floating point specifiers in format strings.
network
foxitsoftware CWE-119
critical
9.3