CVE-2011-10030
Foxit PDF Reader < 4.3.1.0218 exposes a JavaScript API function, createDataObject(), that allows untrusted PDF content to write arbitrary files anywhere on disk. By embedding a malicious PDF that calls this API, an attacker can drop executables or scripts into privileged folders, leading to code execution the next time the system boots or the user logs in.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.4
- CVSS vector
- CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
- EPSS probability
- 3.03%
- CWE
- CWE-73
- Published
- 2025-08-20
- Last modified
- 2026-05-15
Affected products
- Foxit Software Foxit PDF Reader
- Foxit Software Foxit PDF Reader
Weakness type
Related vulnerabilities
- CVE-2025-71338 — Flowise through 2.2.7 - Arbitrary File Write to Remote Code Execution via document-store API
- CVE-2026-50148 — Metabase: Remote Code Execution via Snowflake JDBC Driver Arbitrary File Write
- CVE-2026-20358 — Cisco Crosswork Security Hardening Release: August 2026
- CVE-2026-11526 — GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments in _make_filehandle
- CVE-2026-67429 — Flyto2 Core: Arbitrary file write via image.download (and other file-writing modules)
- CVE-2026-48750 — Incus has an arbitrary file write on host via `exec-output` symlink in crafted image
- CVE-2026-9559 — A path traversal vulnerability exists in the campaign import feature of Mautic 7. When extracting uploaded ZIP files dur
- CVE-2026-63343 — Arbitrary File Read/Write: metadata.yaml symlink in image allows host filesystem access as root