vulnerability

Foxit Reader: Improper Verification of Cryptographic Signature (CVE-2020-26540)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
2020-10-02
Added
2020-10-06
Modified
2021-08-05

Description

An issue was discovered in Foxit Reader and PhantomPDF before 4.1 on macOS. Because the Hardened Runtime protection mechanism is not applied to code signing, code injection (or an information leak) can occur.

Solution

foxit-reader-upgrade-4_1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.