CVE-2018-19418: Foxitsoftware PDF Activex
High severity, CVSS 7.8. EPSS: 8.3% chance of exploitation in the next 30 days.
Foxit PDF ActiveX before 5.5.1 allows remote code execution via command injection because of the lack of a security permission control.
Affected products
- Foxitsoftware PDF Activex: before 5.5.1 (fixed in 5.5.1)
Published 2021-01-07. Last modified 2026-06-17.