CyberRota Analysis
AI-GeneratedA vulnerability in the update mechanism of Foxit PDF Editor/Reader permits local attackers to replace an update package during the download and extraction process, due to inadequate file locking and integrity checks. This flaw could lead to arbitrary code execution with elevated privileges, posing a significant risk to systems using the affected software. Organizations utilizing Foxit PDF products should prioritize addressing this vulnerability to mitigate potential exploitation.
Original NVD Description
A vulnerability in Foxit PDF Editor/Reader’s update mechanism allows an update package to be replaced between download and high-privilege extraction due to insufficient file locking and integrity validation. This could enable local attackers to execute arbitrary code with elevated privileges.
Related CVEs
Other vulnerabilities affecting the same vendor(s)