CVE-2021-38572

Publication date

2021-08-11 21:13:19

Family

mitre

State

PUBLISHED

Description

An issue was discovered in Foxit Reader and PhantomPDF before 10.1.4. It allows writing to arbitrary files because the extractPages pathname is not validated.