vulnerability

Foxit Reader: Improper Verification of Cryptographic Signature (CVE-2020-26540)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Oct 2, 2020
Added
Oct 6, 2020
Modified
Aug 5, 2021

Description

An issue was discovered in Foxit Reader and PhantomPDF before 4.1 on macOS. Because the Hardened Runtime protection mechanism is not applied to code signing, code injection (or an information leak) can occur.

Solution

foxit-reader-upgrade-4_1
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.