CVE-2020-13810: High severity foxit phantompdf vulnerability
Published Jun 4, 2020
·Updated
An issue was discovered in Foxit Reader and PhantomPDF before 9.7.2. It allows signature validation bypass via a modified file or a file with non-standard signatures.
Affected Software
2 affected components
Foxitsoftware Phantompdf<9.7.2
Foxitsoftware Reader<9.7.2
Remediation
Patch Available
Event History
Jun 4, 2020
CVE Published
via MITRE·02:55 PM
Data Sourced
via MITRE·02:55 PM
Description
Frequently Asked Questions
1
What is CVE-2020-13810?
CVE-2020-13810 is a vulnerability discovered in Foxit Reader and PhantomPDF before 9.7.2, which allows signature validation bypass.
2
How does CVE-2020-13810 affect Foxit Reader and PhantomPDF?
CVE-2020-13810 affects Foxit Reader and PhantomPDF versions before 9.7.2 and allows signature validation bypass.
3
What is the severity of CVE-2020-13810?
CVE-2020-13810 has a severity rating of high with a CVSS score of 7.5.
4
How can I fix the CVE-2020-13810 vulnerability in Foxit Reader and PhantomPDF?
To fix the CVE-2020-13810 vulnerability, you should update Foxit Reader and PhantomPDF to version 9.7.2 or higher.
5
Where can I find more information about CVE-2020-13810?
You can find more information about CVE-2020-13810 on the Foxit Software support website.