CVE-2024-32488
HIGHDescription
In Foxit PDF Reader and Editor before 2024.1, Local Privilege Escalation could occur during update checks because weak permissions on the update-service folder allow attackers to place crafted DLL files there.
Is your site exposed to CVE-2024-32488?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| foxit | pdf_editor |
| foxit | pdf_editor |
| foxit | pdf_editor |
| foxit | pdf_editor |
| foxit | pdf_editor |
| foxit | pdf_reader |
| microsoft | windows |
References
Frequently Asked Questions
What is CVE-2024-32488? +
How severe is CVE-2024-32488? +
What products are affected by CVE-2024-32488? +
How do I check if I'm vulnerable to CVE-2024-32488? +
Related Vulnerabilities
When creating an export of all reusable media, the secrets of connected gift cards were included in the export even …
Improper Handling of Insufficient Permissions or Privileges vulnerability in Apache Kvrocks. This issue affects Apache Kvrocks: 2.8.0. Users are recommended …
An Improper Handling of Insufficient Permissions or Privileges vulnerability in scripts used in B&R APROL <4.4-00P5 may allow an authenticated …
LDAP filter injection vulnerability in Yandex Database prior to 25.3.1.25 allows a remote attacker with valid LDAP credentials to bypass …
Pixelfed is an open source photo sharing platform. When processing requests authorization was improperly and insufficiently checked, allowing attackers to …
Kernel software installed and running inside an untrusted/rich execution environment (REE) could leak information from the trusted execution environment (TEE).