Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 646 respecto a la semana anterior
Críticas / altas1266▼ 292 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)250▼ 252 respecto a la semana anterior
1169 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of CR2 files.… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of CR2 files.… | |
| Modificada | Alta (7.8) | 2.8% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of CMP… | |
| Modificada | Baja (3.3) | 2.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of CMP… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the processing of NEF… | |
| Modificada | Alta (7.8) | 3.5% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of CR2 files.… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of EPS files.… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of EZI files.… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of ARW files.… | |
| Modificada | Baja (3.3) | 2.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of EPS… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of NEF files.… | |
| Modificada | Baja (3.3) | 2.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of NEF… | |
| Modificada | Alta (7.8) | 3.7% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of NEF files.… | |
| Modificada | Alta (7.8) | 3.6% | — | Foxitsoftware Foxit Studio Photo | 9/2/2021 | 17/6/2026 | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of EZIX files.… | |
| Modificada | Alta (8.1) | 0.83% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 because of a different opcode. | |
| Modificada | Alta (8.1) | 0.83% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | |
| Modificada | Alta (8.1) | 0.85% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCheckLicence race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | |
| Modificada | Alta (8.1) | 0.83% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyPreviewAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | |
| Modificada | Media (5.3) | 3.6% | — | Avanquest Expert PDF UltimateAvanquest PDF Experte UltimateFoxitsoftware Foxit ReaderGonitro Nitro PRO+13 | 7/1/2021 | 17/6/2026 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signatures. Consequently, a Signature Wrapping vulnerability exists in multiple products. An attacker can use /ByteRange and xref manipulations that are not detected by the… | |
| Modificada | Media (5.3) | 1.1% | — | Code-industry Master PDF EditorFoxitsoftware Foxit ReaderFoxitsoftware PhantompdfGonitro Nitro PRO+9 | 7/1/2021 | 17/6/2026 | The Portable Document Format (PDF) specification does not provide any information regarding the concrete procedure of how to validate signatures. Consequently, an Incremental Saving vulnerability exists in multiple products. When an attacker uses the Incremental Saving feature to add pages or annotations, Body Updates… | |
| Modificada | Alta (8.1) | 0.83% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read, a different issue than CVE-2018-20310 because of a different opcode. | |
| Modificada | Alta (8.1) | 0.83% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyCPDFAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | |
| Modificada | Alta (8.1) | 0.87% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyDoAction race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | |
| Modificada | Alta (8.1) | 0.83% | — | Foxitsoftware PhantompdfFoxitsoftware Reader | 7/1/2021 | 17/6/2026 | Foxit Reader before 9.5, and PhantomPDF before 8.3.10 and 9.x before 9.5, has a proxyGetAppEdition race condition that can cause a stack-based buffer overflow or an out-of-bounds read. | |
| Modificada | Alta (7.8) | 8.3% | — | Foxitsoftware PDF Activex | 7/1/2021 | 17/6/2026 | Foxit PDF ActiveX before 5.5.1 allows remote code execution via command injection because of the lack of a security permission control. |