vulnerability
Foxit Reader: Insufficient Verification of Data Authenticity (CVE-2020-11493)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 6 | (AV:N/AC:M/Au:N/C:P/I:N/A:P) | Sep 4, 2020 | Sep 11, 2020 | Sep 11, 2020 |
Severity
6
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:P)
Published
Sep 4, 2020
Added
Sep 11, 2020
Modified
Sep 11, 2020
Description
In Foxit Reader and PhantomPDF before 10.0.1, and PhantomPDF before 9.7.3, attackers can obtain sensitive information about an uninitialized object because of direct transformation from PDF Object to Stream without concern for a crafted XObject.
Solution
foxit-reader-upgrade-latest
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.