CVE-2023-33240: Foxit PDF Editor

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Foxit PDF Reader (12.1.1.15289 and earlier) and Foxit PDF Editor (12.1.1.15289 and all previous 12.x versions, 11.2.5.53785 and all previous 11.x versions, and 10.1.11.37866 and earlier) on Windows allows Local Privilege Escalation when installed to a non-default directory because unprivileged users have access to an executable file of a system service. This is fixed in 12.1.2.

Affected products

  • Foxit PDF Editor: up to and including 10.1.11.37866; from 11.0.0, up to and including 11.2.5.53785; from 12.0.0, up to and including 12.1.1.15289
  • Foxit PDF Reader: up to and including 12.1.1.15289

Published 2023-05-19. Last modified 2026-06-17.