CVE-2015-2789 Information

Description

Unquoted Windows search path vulnerability in the Foxit Cloud Safe Update Service in the Cloud plugin in Foxit Reader 6.1 through 7.0.6.1126 allows local users to gain privileges via a Trojan horse program in the SYSTEMDRIVE folder.

Reference

http://packetstormsecurity.com/files/130840/Foxit-Reader-7.0.6.1126-Privilege-Escalation.html http://www.exploit-db.com/exploits/36390 http://www.foxitsoftware.com/support/security_bulletins.phpFRD-25 http://www.securityfocus.com/bid/73432 http://www.securitytracker.com/id/1031879 http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5235.php

Share on: