CVE-2015-2789 EXPLOIT
4.4
MEDIUM · CVSS 2.0 · EPSS 3.2% (pctl 88)
Patch early
A public exploit exists.
Description
Unquoted Windows search path vulnerability in the Foxit Cloud Safe Update Service in the Cloud plugin in Foxit Reader 6.1 through 7.0.6.1126 allows local users to gain privileges via a Trojan horse program in the %SYSTEMDRIVE% folder.
Scoring
| CVSS | 4.4 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:L/AC:M/Au:N/C:P/I:P/A:P |
| EPSS | 3.19% — more likely to be exploited than 88% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2015-03-30 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| foxitsoftware | foxit reader |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Foxit Reader 7.0.6.1126 - Unquoted Service Path Privilege Escalation | 2015-03-16 |
References
- http://packetstormsecurity.com/files/130840/Foxit-Reader-7.0.6.1126-Privilege-Escalation.html
- http://www.exploit-db.com/exploits/36390
- http://www.foxitsoftware.com/support/security_bulletins.php#FRD-25
- http://www.securityfocus.com/bid/73432
- http://www.securitytracker.com/id/1031879
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5235.php
- http://packetstormsecurity.com/files/130840/Foxit-Reader-7.0.6.1126-Privilege-Escalation.html
- http://www.exploit-db.com/exploits/36390
- http://www.foxitsoftware.com/support/security_bulletins.php#FRD-25
- http://www.securityfocus.com/bid/73432
- http://www.securitytracker.com/id/1031879
- http://www.zeroscience.mk/en/vulnerabilities/ZSL-2015-5235.php
→ the Explorer · watch your stack · NVD