CVE-2023-33240

Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and 10.1.11.37866 and earlier) on Windows allows Local Privilege Escalation when installed to a non-default directory because unprivileged users have access to an executable file of a system service. This is fixed in 12.1.2.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

21 Jan 2025, 20:15

Type Values Removed Values Added
References (MISC) https://www.foxit.com/support/security-bulletins.html - Vendor Advisory () https://www.foxit.com/support/security-bulletins.html - Vendor Advisory

26 May 2023, 03:32

Type Values Removed Values Added
References (MISC) https://www.foxit.com/support/security-bulletins.html - (MISC) https://www.foxit.com/support/security-bulletins.html - Vendor Advisory
First Time Foxit
Foxit pdf Reader
Foxit pdf Editor
Microsoft
Microsoft windows
CWE NVD-CWE-noinfo
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*:*
cpe:2.3:a:foxit:pdf_reader:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

19 May 2023, 06:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-05-19 06:15

Updated : 2025-01-21 20:15


NVD link : CVE-2023-33240

Mitre link : CVE-2023-33240


JSON object : View

Products Affected

foxit

  • pdf_reader
  • pdf_editor

microsoft

  • windows