PT-2024-21167 · Foxit · Foxit Pdf Reader+1

Published

2024-03-05

·

Updated

2025-05-23

·

CVE-2024-25858

CVSS v3.1

8.4

High

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Foxit PDF Reader versions prior to 2024.1 Foxit PDF Editor versions prior to 2024.1
Description The issue allows code execution via JavaScript due to an unoptimized prompt message for users to review parameters of commands.
Recommendations For Foxit PDF Reader versions prior to 2024.1, update to version 2024.1 or later. For Foxit PDF Editor versions prior to 2024.1, update to version 2024.1 or later.

Fix

Weakness Enumeration

Related Identifiers

CVE-2024-25858

Affected Products

Foxit Pdf Editor
Foxit Pdf Reader