CVE-2015-2789: Foxitsoftware Foxit Reader
Medium severity, CVSS 4.4. EPSS: 3.2% chance of exploitation in the next 30 days.
Unquoted Windows search path vulnerability in the Foxit Cloud Safe Update Service in the Cloud plugin in Foxit Reader 6.1 through 7.0.6.1126 allows local users to gain privileges via a Trojan horse program in the %SYSTEMDRIVE% folder.
Affected products
- Foxitsoftware Foxit Reader: version 6.1 only; version 6.1.2 only; version 6.1.4 only; version 6.2 only; version 6.2.1 only; version 7.0 only; …
Published 2015-03-30. Last modified 2026-06-17.