In Foxit PDF Reader before 2024.1 and PDF Editor before 2024.1, code execution via JavaScript could occur because of an unoptimized prompt message for users to review parameters of commands.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-23165 | In Foxit PDF Reader before 2024.1 and PDF Editor before 2024.1, code execution via JavaScript could occur because of an unoptimized prompt message for users to review parameters of commands. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.foxit.com/support/security-bulletins.html |
|
History
Sat, 29 Mar 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Foxit
Foxit pdf Editor Foxit pdf Reader |
|
| Weaknesses | CWE-450 | |
| CPEs | cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:* cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Foxit
Foxit pdf Editor Foxit pdf Reader |
|
| Metrics |
ssvc
|
Mon, 19 Aug 2024 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-28T23:59:33.820Z
Reserved: 2024-02-12T00:00:00.000Z
Link: CVE-2024-25858
Updated: 2024-08-01T23:52:05.935Z
Status : Analyzed
Published: 2024-03-05T21:15:09.030
Modified: 2025-05-23T14:45:39.303
Link: CVE-2024-25858
No data.
OpenCVE Enrichment
No data.
EUVD