Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2768▼ 554 respecto a la semana anterior
Críticas / altas1325▼ 178 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 242 respecto a la semana anterior
–

596 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.5)1.0%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.2. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.
ModificadaMedia (5.3)0.82%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.2. It allows NTLM credential theft via a GoToE or GoToR action.
ModificadaAlta (7.5)1.0%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF before 8.3.7. It allows memory consumption via an ArrayBuffer(0xfffffffe) call.
ModificadaMedia (5.3)0.82%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF before 8.3.7. It allows NTLM credential theft via a GoToE or GoToR action.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1. It allows stack consumption via a loop of an indirect object reference.
ModificadaCrítica (9.8)1.7%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.1. It has a use-after-free via a document that lacks a dictionary.
ModificadaAlta (7.5)1.5%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF Mac before 3.4. It has a NULL pointer dereference.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It has a NULL pointer dereference during the parsing of file data.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It allows stack consumption via nested function calls for XML parsing.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It allows memory consumption because data is created for each page of an application level.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7. It has a NULL pointer dereference.
ModificadaAlta (7.5)1.5%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF before 8.3.12. It has a NULL pointer dereference during the parsing of file data.
ModificadaAlta (7.5)1.5%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF before 8.3.12. It allows stack consumption via nested function calls for XML parsing.
ModificadaAlta (7.5)1.5%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF before 8.3.12. It allows memory consumption because data is created for each page of an application level.
ModificadaAlta (7.5)1.5%—Foxitsoftware Phantompdf4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF before 8.3.12. It has a NULL pointer dereference.
ModificadaAlta (7.5)1.1%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It allows signature validation bypass via a modified file or a file with non-standard signatures.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It allows resource consumption via long strings in the content stream.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It allows resource consumption via crafted cross-reference stream data.
ModificadaAlta (7.5)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It has circular reference mishandling that causes a loop.
ModificadaAlta (7.5)2.1%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It has a use-after-free because of JavaScript execution after a deletion or close operation.
ModificadaCrítica (9.8)1.5%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It has brute-force attack mishandling because the CAS service lacks a limit on login failures.
ModificadaCrítica (9.8)1.6%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It allows information disclosure of a hardcoded username and password in the DocuSign plugin.
ModificadaAlta (7.5)0.68%—Foxitsoftware PhantompdfFoxitsoftware Reader4/6/202017/6/2026
An issue was discovered in Foxit PhantomPDF Mac and Foxit Reader for Mac before 4.0. It allows signature validation bypass via a modified file or a file with non-standard signatures.
ModificadaAlta (7.8)6.8%—Foxitsoftware Foxit ReaderFoxitsoftware Phantompdf22/4/202017/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the…
ModificadaAlta (7.8)4.8%—Foxitsoftware PhantompdfFoxitsoftware Reader22/4/202017/6/2026
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.7.0.29478. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of the…