Unquoted Windows search path vulnerability in the Foxit Cloud Safe Update Service in the Cloud plugin in Foxit Reader 6.1 through 7.0.6.1126 allows local users to gain privileges via a Trojan horse program in the %SYSTEMDRIVE% folder.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/73432 | vdb entry |
http://packetstormsecurity.com/files/130840/Foxit-Reader-7.0.6.1126-Privilege-Escalation.html | exploit vdb entry third party advisory |
http://www.securitytracker.com/id/1031879 | vdb entry third party advisory |
http://www.foxitsoftware.com/support/security_bulletins.php#FRD-25 | patch vendor advisory |
http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5235.php | third party advisory |
http://www.exploit-db.com/exploits/36390 | exploit vdb entry third party advisory |