Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.815228
Kategorie:General
Titel:Foxit PhantomPDF Multiple Vulnerabilities-June 2019 (Windows)-02
Zusammenfassung:Foxit PhantomPDF is prone to multiple vulnerabilities.
Beschreibung:Summary:
Foxit PhantomPDF is prone to multiple vulnerabilities.

Vulnerability Insight:
Multiple flaws exist due to:

- An issue in handling of the setItems method of a ComboBox resulting in lack of
validating the existence of an object prior to performing operations on the object.

- An issue in handling of the fillColor property of a radio button resulting from
lack of validating the existence of an object prior to performing operations on the
object.

- An issue in handling of Array.prototype.concat resulting from lack of proper
validation of user-supplied data, which can result in a read past the end of
an allocated object.

Vulnerability Impact:
Successful exploitation allows remote attackers
to execute arbitrary code.

Affected Software/OS:
Foxit PhantomPDF versions before 8.3.7.38094 and 9.x to 9.2.0.9297 on Windows.

Solution:
Upgrade to Foxit PhantomPDF 8.3.8 or 9.3 or
later. Please see the references for more information.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2018-17687
Common Vulnerability Exposure (CVE) ID: CVE-2018-17688
Common Vulnerability Exposure (CVE) ID: CVE-2018-17689
Common Vulnerability Exposure (CVE) ID: CVE-2018-17690
Common Vulnerability Exposure (CVE) ID: CVE-2018-17691
Common Vulnerability Exposure (CVE) ID: CVE-2018-17692
Common Vulnerability Exposure (CVE) ID: CVE-2018-17693
Common Vulnerability Exposure (CVE) ID: CVE-2018-17694
Common Vulnerability Exposure (CVE) ID: CVE-2018-17695
Common Vulnerability Exposure (CVE) ID: CVE-2018-17698
Common Vulnerability Exposure (CVE) ID: CVE-2018-17700
Common Vulnerability Exposure (CVE) ID: CVE-2018-17701
Common Vulnerability Exposure (CVE) ID: CVE-2018-17706
CopyrightCopyright (C) 2019 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.