CVE-2026-3780: Foxit PDF Editor/Reader Installer Uncontrolled Search Path Privilege Escalation
The application's installer runs with elevated privileges but resolves system executables and DLLs using untrusted search paths that can include user-writable directories, allowing a local attacker to place malicious binaries with the same names and have them loaded or executed instead of the legitimate system files, resulting in local privilege escalation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3780?
CVE-2026-3780 is classified as a high severity vulnerability due to the potential for local privilege escalation.
How do I fix CVE-2026-3780?
To mitigate CVE-2026-3780, update to the latest version of Foxit PDF Editor or Foxit Reader that addresses this vulnerability.
What is CVE-2026-3780?
CVE-2026-3780 describes a privilege escalation vulnerability in the Foxit PDF Editor/Reader Installer due to uncontrolled search paths.
Who is affected by CVE-2026-3780?
CVE-2026-3780 affects users of Foxit PDF Editor and Foxit Reader, especially in configurations allowing untrusted search paths.
Can CVE-2026-3780 be exploited remotely?
No, CVE-2026-3780 requires local access to exploit, as it involves manipulation of executable search paths.