QID 376802

Date Published: 2022-08-10

QID 376802: Foxit PhantomPDF Prior to 10.1.7 Multiple Security Vulnerabilities

Foxit PhantomPDF enables users to convert multiple file formats to PDF and vice versa.

Foxit PhantomPDF is vulnerable to multiple vulnerabilities

Affected Version:
Foxit PhantomPDF versions 10.1.6.37749 and earlier

QID Detection logic:
This QID checks for vulnerable file version of Foxit PhantomPDF Software

Successful exploitation of these vulnerabilities may allow an attacker to execute arbitrary code or crash the target system.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 9.3 severity.
  • Solution
    The vendor has issued a fix. For more information please visit Security updates available in Foxit PhantomPDF 10.1.7
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    Foxit PhantomPDF 10.1.7 URL Logo www.foxit.com/support/security-bulletins.html