Vulnerability Details CVE-2024-29072
A privilege escalation vulnerability exists in the Foxit Reader 2024.2.0.25138. The vulnerability occurs due to improper certification validation of the updater executable before executing it. A low privilege user can trigger the update action which can result in unexpected elevation of privilege.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 19.6%
CVSS Severity
CVSS v3 Score 8.2
Products affected by CVE-2024-29072
-
cpe:2.3:a:foxit:pdf_editor:-
-
cpe:2.3:a:foxit:pdf_editor:10.1.10
-
cpe:2.3:a:foxit:pdf_editor:10.1.10.37854
-
cpe:2.3:a:foxit:pdf_editor:10.1.11
-
cpe:2.3:a:foxit:pdf_editor:10.1.11.37866
-
cpe:2.3:a:foxit:pdf_editor:10.1.12.37872
-
cpe:2.3:a:foxit:pdf_editor:10.1.5.37672
-
cpe:2.3:a:foxit:pdf_editor:10.1.6.37749
-
cpe:2.3:a:foxit:pdf_editor:10.1.7
-
cpe:2.3:a:foxit:pdf_editor:10.1.8.37795
-
cpe:2.3:a:foxit:pdf_editor:10.1.9
-
cpe:2.3:a:foxit:pdf_editor:11.0.0
-
cpe:2.3:a:foxit:pdf_editor:11.0.0.49893
-
cpe:2.3:a:foxit:pdf_editor:11.0.1.0719
-
cpe:2.3:a:foxit:pdf_editor:11.0.1.49938
-
cpe:2.3:a:foxit:pdf_editor:11.1
-
cpe:2.3:a:foxit:pdf_editor:11.1.4.1121
-
cpe:2.3:a:foxit:pdf_editor:11.1.5.0913
-
cpe:2.3:a:foxit:pdf_editor:11.1.6.0109
-
cpe:2.3:a:foxit:pdf_editor:11.2.0.53415
-
cpe:2.3:a:foxit:pdf_editor:11.2.1
-
cpe:2.3:a:foxit:pdf_editor:11.2.2
-
cpe:2.3:a:foxit:pdf_editor:11.2.2.53575
-
cpe:2.3:a:foxit:pdf_editor:11.2.3
-
cpe:2.3:a:foxit:pdf_editor:11.2.4
-
cpe:2.3:a:foxit:pdf_editor:11.2.4.53774
-
cpe:2.3:a:foxit:pdf_editor:11.2.5
-
cpe:2.3:a:foxit:pdf_editor:11.2.5.53785
-
cpe:2.3:a:foxit:pdf_editor:11.2.6.53790
-
cpe:2.3:a:foxit:pdf_editor:11.2.7.53812
-
cpe:2.3:a:foxit:pdf_editor:11.2.8.53842
-
cpe:2.3:a:foxit:pdf_editor:12.0.0
-
cpe:2.3:a:foxit:pdf_editor:12.0.0.0601
-
cpe:2.3:a:foxit:pdf_editor:12.0.0.12394
-
cpe:2.3:a:foxit:pdf_editor:12.0.1
-
cpe:2.3:a:foxit:pdf_editor:12.0.2
-
cpe:2.3:a:foxit:pdf_editor:12.1
-
cpe:2.3:a:foxit:pdf_editor:12.1.0.1229
-
cpe:2.3:a:foxit:pdf_editor:12.1.0.15250
-
cpe:2.3:a:foxit:pdf_editor:12.1.1.15289
-
cpe:2.3:a:foxit:pdf_editor:12.1.1.55342
-
cpe:2.3:a:foxit:pdf_editor:12.1.2.15332
-
cpe:2.3:a:foxit:pdf_editor:12.1.2.55366
-
cpe:2.3:a:foxit:pdf_editor:12.1.3.15356
-
cpe:2.3:a:foxit:pdf_editor:12.1.4.15400
-
cpe:2.3:a:foxit:pdf_editor:13.0.0.21632
-
cpe:2.3:a:foxit:pdf_editor:13.0.0.61829
-
cpe:2.3:a:foxit:pdf_editor:13.0.1.21693
-
cpe:2.3:a:foxit:pdf_editor:13.0.1.61866
-
cpe:2.3:a:foxit:pdf_editor:2023.1.0.15510
-
cpe:2.3:a:foxit:pdf_editor:2023.2.0.21408
-
cpe:2.3:a:foxit:pdf_editor:2023.2.0.61611
-
cpe:2.3:a:foxit:pdf_editor:2023.3.0.23028
-
cpe:2.3:a:foxit:pdf_editor:2024.1.0.23997
-
cpe:2.3:a:foxit:pdf_reader:-
-
cpe:2.3:a:foxit:pdf_reader:10.1.0.37527
-
cpe:2.3:a:foxit:pdf_reader:10.1.3.37598
-
cpe:2.3:a:foxit:pdf_reader:10.1.4.37651
-
cpe:2.3:a:foxit:pdf_reader:11.0.0.49893
-
cpe:2.3:a:foxit:pdf_reader:11.0.1.0719
-
cpe:2.3:a:foxit:pdf_reader:11.0.1.49938
-
cpe:2.3:a:foxit:pdf_reader:11.1
-
cpe:2.3:a:foxit:pdf_reader:11.1.0.52543
-
cpe:2.3:a:foxit:pdf_reader:11.2.1
-
cpe:2.3:a:foxit:pdf_reader:11.2.1.53537
-
cpe:2.3:a:foxit:pdf_reader:11.2.2
-
cpe:2.3:a:foxit:pdf_reader:11.2.2.53575
-
cpe:2.3:a:foxit:pdf_reader:12.0
-
cpe:2.3:a:foxit:pdf_reader:12.0.1
-
cpe:2.3:a:foxit:pdf_reader:12.0.1.12430
-
cpe:2.3:a:foxit:pdf_reader:12.0.2
-
cpe:2.3:a:foxit:pdf_reader:12.1
-
cpe:2.3:a:foxit:pdf_reader:12.1.0.1229
-
cpe:2.3:a:foxit:pdf_reader:12.1.0.15250
-
cpe:2.3:a:foxit:pdf_reader:12.1.1.15289
-
cpe:2.3:a:foxit:pdf_reader:12.1.2.15332
-
cpe:2.3:a:foxit:pdf_reader:12.1.3.15356
-
cpe:2.3:a:foxit:pdf_reader:2023.1.0.15510
-
cpe:2.3:a:foxit:pdf_reader:2023.2.0.21408
-
cpe:2.3:a:foxit:pdf_reader:2023.3.0.23028
-
cpe:2.3:a:foxit:pdf_reader:2024.1.0.23997
-
cpe:2.3:a:foxit:pdf_reader:8.3.2.25013
-
cpe:2.3:a:foxit:pdf_reader:9.0.1.1049
-
cpe:2.3:o:microsoft:windows:-