Impact
Foxit PDF Editor/Reader displays an inconsistent popup when a signature field is altered in appearance, placement, or duplication. Because the user interface does not accurately reflect the real integrity state of the signature, a user may mistakenly believe that a tampered document remains trusted. The flaw does not grant code execution or direct system compromise but can lead to the acceptance of altered or fraudulent documents, potentially exposing the user to misinformation, data tampering, or business process disruption.
Affected Systems
Foxit Software Inc.’s PDF Editor and PDF Reader applications are affected. Specific version information is not provided, so all released versions should be treated as potentially vulnerable until a patch is issued.
Risk and Exploitability
The CVSS score of 4.7 indicates moderate severity. No EPSS score is available, and the vulnerability is not listed in the CISA KEV catalog at this time. Based on the description, the likely attack vector is a user opening a malicious PDF; the attacker would modify signature fields to appear valid, exploiting the UI’s inconsistent alerting. The vulnerability requires no special privileges beyond user interaction with the document, making it relatively accessible to malicious actors who can target end users with deceptive PDFs.
OpenCVE Enrichment