CVE-2023-33240

Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and 10.1.11.37866 and earlier) on Windows allows Local Privilege Escalation when installed to a non-default directory because unprivileged users have access to an executable file of a system service. This is fixed in 12.1.2.
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

26 May 2023, 03:32

Type Values Removed Values Added
First Time Foxit pdf Editor
Foxit pdf Reader
Foxit
Microsoft windows
Microsoft
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
References (MISC) https://www.foxit.com/support/security-bulletins.html - (MISC) https://www.foxit.com/support/security-bulletins.html - Vendor Advisory

19 May 2023, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-19 06:15

Updated : 2023-12-10 15:01


NVD link : CVE-2023-33240

Mitre link : CVE-2023-33240

CVE.ORG link : CVE-2023-33240


JSON object : View

Products Affected

microsoft

  • windows

foxit

  • pdf_editor
  • pdf_reader