Eight highly critical vulnerabilities have been discovered in Foxit Reader and Foxit has come out with the patches to fix these vulnerabilities.
The most severe of these vulnerabilities has a CVSS score of 8.8 and could result in arbitrary code execution and denial of service, when used in older versions of Foxit Reader (version 9.4.1.16828). The other seven vulnerabilities have a CVSS score of 7.8 and could allow a remote attacker to gain access to the system. These specifically target Windows system hosting older versions of Foxit Reader (9.6.0.25114 and earlier).
The CVE ID's of these vulnerabilities are as given below
CVE-2019-5031
CVE-2019-13326
CVE-2019-13327
CVE-2019-13328
CVE-2019-13329
CVE-2019-13330
CVE-2019-13331
CVE-2019-13332
Patch these vulnerabilities using Patch Manager Plus
Update to the latest version of Foxit Reader (version 9.7) using Patch Manager Plus by searching for the following patch IDs
For Foxit Reader Enterprise :
Patch id : 311099
Bulletin id : TU-120
Patch Description : Foxit Reader Enterprise (9.7.0.29455)
For Foxit Reader :
Patch id : 311097
Bulletin id : TU-023
Patch Description : Foxit Reader (9.7.0.29455)
Note: Incase you are unable to find these patches in the missing patches list, sync the patch database and scan your machines.
Update immediately and stay secure
Cheers,
Patch Manager Plus team