Vulnerabilities > Foxitsoftware > Phantompdf > 9.7.2

DATE CVE VULNERABILITY TITLE RISK
2020-10-13 CVE-2020-17415 Incorrect Permission Assignment for Critical Resource vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit PhantomPDF 10.0.0.35798.
local
low complexity
foxitsoftware CWE-732
7.2
2020-10-13 CVE-2020-17414 Incorrect Permission Assignment for Critical Resource vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows local attackers to escalate privileges on affected installations of Foxit Reader 10.0.0.35798.
local
low complexity
foxitsoftware CWE-732
7.2
2020-10-13 CVE-2020-17410 Use After Free vulnerability in Foxitsoftware Foxit Reader
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798.
6.8
2020-10-02 CVE-2020-26539 Use After Free vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
network
low complexity
foxitsoftware CWE-416
7.5
2020-10-02 CVE-2020-26538 Unspecified vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
4.4
2020-10-02 CVE-2020-26537 Out-of-bounds Write vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
network
low complexity
foxitsoftware CWE-787
7.5
2020-10-02 CVE-2020-26536 NULL Pointer Dereference vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
4.3
2020-10-02 CVE-2020-26535 Out-of-bounds Write vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
network
low complexity
foxitsoftware CWE-787
7.5
2020-10-02 CVE-2020-26534 Use After Free vulnerability in Foxitsoftware Foxit Reader
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.
network
low complexity
foxitsoftware CWE-416
7.5
2020-09-04 CVE-2020-12248 Out-of-bounds Write vulnerability in Foxitsoftware Phantompdf
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can execute arbitrary code via a heap-based buffer overflow because dirty image-resource data is mishandled.
6.8