Foxit Reader是中国福昕(Foxit)公司的一款PDF文档阅读器。 Foxit Reader 10.0之前版本的 app.opencPDFWebPage JavsScript API存在命令注入漏洞,该漏洞使攻击者可以执行本地文件并绕过安全对话框。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7758 | 7.5 HIGH | Path Traversal |
| CVE-2020-7757 | 6.5 MEDIUM | Path Traversal |
| CVE-2020-26939 | Bouncy Castle BC和Bouncy Castle 安全漏洞 | |
| CVE-2020-23868 | NeDi Consulting NeDi 跨站脚本漏洞 | |
| CVE-2020-23989 | NeDi Consulting NeDi 跨站脚本漏洞 | |
| CVE-2020-23639 | Moxa VPort 461 Series 命令注入漏洞 | |
| CVE-2020-9368 | PrestaShop 路径遍历漏洞 | |
| CVE-2020-10937 | IPFS 安全漏洞 | |
| CVE-2018-17932 | SHUN HU JUUKO Industrial Radio Remote Control 安全漏洞 | |
| CVE-2018-19025 | SHUN HU JUUKO Industrial Radio Remote Control 安全漏洞 | |
| CVE-2020-24881 | Enhancesoft osTicket 代码问题漏洞 |
No comments yet