Description
A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader due to an insecure permission configuration that allows the configuration file to be modified by regular users, which may lead to arbitrary script execution with higher privileges.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://www.foxit.com/support/security-bulletins.html |
|
History
Wed, 23 Sep 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader due to an insecure permission configuration that allows the configuration file to be modified by regular users, which may lead to arbitrary script execution with higher privileges. | |
| Title | Foxit PDF Editor/Reader Updater Privilege Escalation | |
| Weaknesses | CWE-732 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Foxit
Published:
Updated: 2026-09-23T07:50:17.873Z
Reserved: 2026-09-15T07:34:43.392Z
Link: CVE-2026-91798
No data.
Status : Received
Published: 2026-09-23T08:17:11.793
Modified: 2026-09-23T08:17:11.793
Link: CVE-2026-91798
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-732
Incorrect Permission Assignment for Critical Resource