Foxit’s Own Update Service Can Be Turned Into a SYSTEM-Level Backdoor on Windows
A privilege-escalation flaw in Foxit PDF Reader’s updater, tracked as CVE-2026-57239, lets an attacker who already has a foothold on a Windows machine ride the update service all the way to full SYSTEM control. Foxit has shipped a fix in version 2026.2.
Itagora tiene in archivio titolo e sommario per la ricerca interna. Il testo completo resta sulla fonte. Il link in uscita non invia referrer.