Security Advisory

CVE-2024-41605

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-09-26 00:00:00
Last updated 2024-09-27 12:55:43
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In Foxit PDF Reader before 2024.3, and PDF Editor before 2024.3 and 13.x before 13.1.4, an attacker can replace an update file with a Trojan horse via side loading, because the update service lacks integrity validation for the updater. Attacker-controlled code may thus be executed.