First published: Thu Sep 06 2012(Updated: )
Untrusted search path vulnerability in facebook_plugin.fpi in the Facebook plug-in in Foxit Reader 5.3.1.0606 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory, as demonstrated by a directory that contains a .pdf file. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Foxit Reader | =5.3.1.0606 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4759 is considered a medium severity vulnerability due to its potential to allow local privilege escalation.
To fix CVE-2012-4759, update Foxit Reader to the latest version that addresses this vulnerability.
CVE-2012-4759 affects Foxit Reader version 5.3.1.0606 and could allow untrusted search path vulnerabilities.
CVE-2012-4759 cannot be exploited remotely as it requires local access to the system.
The potential impacts of CVE-2012-4759 include unauthorized privilege escalation which may compromise system security.