CVE Vulnerabilities

CVE-2015-2789

Published: Mar 30, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.4 MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unquoted Windows search path vulnerability in the Foxit Cloud Safe Update Service in the Cloud plugin in Foxit Reader 6.1 through 7.0.6.1126 allows local users to gain privileges via a Trojan horse program in the %SYSTEMDRIVE% folder.

Affected Software

NameVendorStart VersionEnd Version
Foxit_readerFoxitsoftware6.1 (including)6.1 (including)
Foxit_readerFoxitsoftware6.1.2 (including)6.1.2 (including)
Foxit_readerFoxitsoftware6.1.4 (including)6.1.4 (including)
Foxit_readerFoxitsoftware6.2 (including)6.2 (including)
Foxit_readerFoxitsoftware6.2.1 (including)6.2.1 (including)
Foxit_readerFoxitsoftware7.0 (including)7.0 (including)
Foxit_readerFoxitsoftware7.0.6 (including)7.0.6 (including)

References