Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
–

372 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf17/5/201817/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D Chain…
ModificadaMedia (6.5)2.4%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf17/5/201817/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D…
ModificadaMedia (6.5)2.4%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf17/5/201817/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf17/5/201817/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D Shading…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf17/5/201817/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 9.0.0.29935. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of U3D CLOD Base…
ModificadaAlta (8.8)3.5%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf24/4/201817/6/2026
In Foxit Reader before 9.1 and Foxit PhantomPDF before 9.1, a flaw exists within the parsing of the BITMAPINFOHEADER record in BMP files. The issue results from the lack of proper validation of the biSize member, which can result in a heap based buffer overflow. An attacker can leverage this to execute code in the…
ModificadaAlta (8.8)2.5%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf23/4/201817/6/2026
A use-after-free in Foxit Reader before 9.1 and PhantomPDF before 9.1 allows remote attackers to execute arbitrary code, aka iDefense ID V-y0nqfutlf3.
ModificadaAlta (7.8)3.1%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf23/4/201817/6/2026
A use-after-free in Foxit Reader before 9.1 and PhantomPDF before 9.1 allows remote attackers to execute arbitrary code, aka iDefense ID V-jyb51g3mv9.
ModificadaAlta (8.8)22%—Foxitsoftware Foxit Reader19/4/201817/6/2026
An exploitable type confusion vulnerability exists in the way Foxit PDF Reader version 9.0.1.1049 parses files with associated file annotations. A specially crafted PDF document can lead to an object of invalid type to be dereferenced, which can potentially lead to sensitive memory disclosure, and possibly to…
ModificadaAlta (8.8)3.2%—Foxitsoftware Foxit Reader19/4/201817/6/2026
An exploitable use of an uninitialized pointer vulnerability exists in the JavaScript engine in Foxit PDF Reader version 9.0.1.1049. A specially crafted PDF document can lead to a dereference of an uninitialized pointer which, if under attacker control, can result in arbitrary code execution. An attacker needs to…
ModificadaAlta (7.8)5.2%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf7/2/201817/6/2026
Heap-based buffer overflow in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (memory corruption and application crash) or potentially execute arbitrary code via the Bezier data in a crafted PDF file.
ModificadaAlta (7.8)3.2%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf7/2/201817/6/2026
Use-after-free vulnerability in Foxit Reader and PhantomPDF 7.3.4.311 and earlier on Windows allows remote attackers to cause a denial of service (application crash) and execute arbitrary code via a crafted PDF file.
ModificadaMedia (6.5)2.8%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 8.3.1.21155. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of the…
ModificadaMedia (6.5)2.8%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 8.3.1.21155. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of SOT…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the removeField method. The…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the addAnnot method. The…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the app.response method. The…
ModificadaMedia (6.5)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within util.printf. The…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the datasets element of XFA…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the clearItems XFA method.…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the author attribute of the…
ModificadaMedia (6.5)2.5%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the ImageField node…
ModificadaMedia (6.5)2.5%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.2.25013. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the picture elements within…
ModificadaAlta (8.8)2.6%—Foxitsoftware Foxit Reader20/12/201717/6/2026
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader 8.3.1.21155. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the alignment attribute of…
Orbitaley — Vulnerabilidades