CVE-2022-28104: Malicious File Upload
Published May 20, 2022
·Updated
Foxit PDF Editor v11.3.1 was discovered to contain an arbitrary file upload vulnerability.
Affected Software
2 affected components
Foxit PDF Editor=11.3.1
iPhone OS
Event History
May 20, 2022
CVE Published
via MITRE·12:48 PM
Data Sourced
via MITRE·12:48 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-28104?
CVE-2022-28104 is rated as a medium severity vulnerability due to its arbitrary file upload capability.
2
How do I fix CVE-2022-28104?
To mitigate CVE-2022-28104, update Foxit PDF Editor to the latest version where the vulnerability has been addressed.
3
What impact does CVE-2022-28104 have on Foxit PDF Editor?
CVE-2022-28104 allows an attacker to upload arbitrary files, which could lead to further exploitation or data compromise.
4
Is CVE-2022-28104 present in earlier versions of Foxit PDF Editor?
Yes, CVE-2022-28104 specifically affects Foxit PDF Editor v11.3.1 and potentially earlier versions.
5
How was CVE-2022-28104 discovered?
CVE-2022-28104 was identified during security assessments that highlighted vulnerabilities in file handling processes.