CVE-2024-29072

A privilege escalation vulnerability exists in the Foxit Reader 2024.2.0.25138. The vulnerability occurs due to improper certification validation of the updater executable before executing it. A low privilege user can trigger the update action which can result in unexpected elevation of privilege.
Configurations

No configuration.

History

No history.

Information

Published : 2024-05-28 14:15

Updated : 2024-06-10 18:15


NVD link : CVE-2024-29072

Mitre link : CVE-2024-29072

CVE.ORG link : CVE-2024-29072


JSON object : View

Products Affected

No product.

CWE
CWE-295

Improper Certificate Validation