
Cloud Vulnerability DB
A community-led vulnerabilities database
Foxit PDF Reader before 12.0.1 and PDF Editor before 12.0.1 contain a NULL pointer dereference vulnerability in the this.maildoc component. The vulnerability was discovered and disclosed in May 2022, affecting multiple versions of both Foxit PDF Reader and PDF Editor software (NVD).
The vulnerability is classified as a NULL Pointer Dereference (CWE-476) with a CVSS v3.1 base score of 5.5 (Medium) and vector string CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H. The vulnerability requires local access and user interaction to be exploited (NVD).
If successfully exploited, this vulnerability could allow attackers to cause a Denial of Service (DoS) condition through a crafted PHP file. The impact is limited to availability with no direct effect on confidentiality or integrity (NVD).
Users should update to Foxit PDF Reader version 12.0.1 or later and Foxit PDF Editor version 12.0.1 or later to address this vulnerability (Foxit Security).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."