CVE-2021-38573
11.08.2021, 22:15
An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because a CombineFiles pathname is not validated.Enginsight
Vendor | Product | Version |
---|---|---|
foxitsoftware | foxit_reader | 𝑥 < 10.1.4 |
foxitsoftware | phantompdf | 𝑥 < 10.1.4 |
𝑥
= Vulnerable software versions