ZeroHour

CVE-2020-26540

CVSS 3.1
7.5 high
EPSS
<1%p50
Published
()
Modified
Description

An issue was discovered in Foxit Reader and PhantomPDF before 4.1 on macOS. Because the Hardened Runtime protection mechanism is not applied to code signing, code injection (or an information leak) can occur.

Vendors
foxitsoftware
Products
foxit reader, phantompdf
Weakness
CWE-347
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.