CVE-2024-30346
CVE-2024-30346 is a critical vulnerability in Foxit PDF Reader that allows remote code execution. This AcroForm Use-After-Free vulnerability requires user interaction, such as opening a malicious PDF file, to exploit. With an SVRS of 30, the threat is considered moderate, though it still warrants attention given the potential for arbitrary code execution. The flaw lies in the handling of Doc objects within AcroForms, where the lack of object validation allows attackers to execute code within the current process's context. This can lead to full system compromise. While the CVSS score is 0, the SVRS highlights a real-world exploitability risk. Addressing this vulnerability by updating Foxit PDF Reader is crucial to protect against potential attacks.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.