CVE-2024-41605

In Foxit PDF Reader before 2024.3, and PDF Editor before 2024.3 and 13.x before 13.1.4, an attacker can replace an update file with a Trojan horse via side loading, because the update service lacks integrity validation for the updater. Attacker-controlled code may thus be executed.
Configurations

No configuration.

History

No history.

Information

Published : 2024-09-26 16:15

Updated : 2024-09-30 12:46


NVD link : CVE-2024-41605

Mitre link : CVE-2024-41605

CVE.ORG link : CVE-2024-41605


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control