CVE-2021-33794: Critical severity foxit reader vulnerability
Published Aug 11, 2021
·Updated
Foxit Reader before 10.1.4 and PhantomPDF before 10.1.4 allow information disclosure or an application crash after mishandling the Tab key during XFA form interaction.
Affected Software
2 affected components
Foxitsoftware Foxit Reader<10.1.4
Foxitsoftware Phantompdf<10.1.4
Remediation
Event History
Aug 11, 2021
CVE Published
via MITRE·07:28 PM
Data Sourced
via MITRE·07:28 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-33794.
2
What software versions are affected by this vulnerability?
Foxit Reader before version 10.1.4 and PhantomPDF before version 10.1.4 are affected by this vulnerability.
3
What is the severity of CVE-2021-33794?
The severity of CVE-2021-33794 is critical with a score of 9.1.
4
What is the impact of this vulnerability?
This vulnerability allows information disclosure or an application crash after mishandling the Tab key during XFA form interaction.
5
How can I fix this vulnerability?
To fix this vulnerability, upgrade to Foxit Reader version 10.1.4 or PhantomPDF version 10.1.4.