7.8 CVE-2023-33240

 

Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and 10.1.11.37866 and earlier) on Windows allows Local Privilege Escalation when installed to a non-default directory because unprivileged users have access to an executable file of a system service. This is fixed in 12.1.2.
https://nvd.nist.gov/vuln/detail/CVE-2023-33240

Categories

CWE-NVD-noinfo

References


 

CPE

cpe start end
Configuration 1
   cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:* <= 10.1.11.37866
   cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:* >= 11.0.0 <= 11.2.5.53785
   cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:* >= 12.0.0 <= 12.1.1.15289
   cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:* <= 12.1.1.15289
  Running on/with
  cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


REMEDIATION




EXPLOITS


Exploit-db.com

id description date
No known exploits

Other (github, ...)

Url
No known exploits


CAPEC


Common Attack Pattern Enumerations and Classifications

id description severity
No entry


MITRE