Vulnerabilities
Vulnerable Software
Foxitsoftware:  >> Phantompdf  Security Vulnerabilities
Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via an object with a revision number of -1 in a PDF document.
CVSS Score
7.8
EPSS Score
0.015
Published
2016-04-22
Foxit Reader and PhantomPDF before 7.3.4 on Windows improperly report format errors recursively, which allows remote attackers to cause a denial of service (application hang) via a crafted PDF.
CVSS Score
5.5
EPSS Score
0.0
Published
2016-04-22
Foxit Reader and PhantomPDF before 7.3.4 on Windows allow remote attackers to cause a denial of service (application crash) via a crafted content stream.
CVSS Score
7.5
EPSS Score
0.002
Published
2016-04-22
Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
CVSS Score
7.5
EPSS Score
0.001
Published
2016-04-22
Use-after-free vulnerability in Foxit Reader and PhantomPDF before 7.3.4 on Windows allows remote attackers to execute arbitrary code via a crafted FlateDecode stream in a PDF document.
CVSS Score
7.8
EPSS Score
0.013
Published
2016-04-22
Multiple use-after-free vulnerabilities in the (1) Print method and (2) App object handling in Foxit Reader before 7.2.2 and Foxit PhantomPDF before 7.2.2 allow remote attackers to execute arbitrary code via a crafted PDF document.
CVSS Score
6.8
EPSS Score
0.005
Published
2015-12-16
Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via vectors related to digital signatures.
CVSS Score
5.0
EPSS Score
0.001
Published
2015-05-01
Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1.5 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted GIF in a PDF file.
CVSS Score
4.3
EPSS Score
0.068
Published
2015-05-01
Foxit Reader, Enterprise Reader, and PhantomPDF before 7.1 allow remote attackers to cause a denial of service (memory corruption and crash) via a crafted (1) Ubyte Size in a DataSubBlock structure or (2) LZWMinimumCodeSize in a GIF image.
CVSS Score
4.3
EPSS Score
0.545
Published
2015-03-30


Contact Us

Shodan ® - All rights reserved