High severity7.8NVD Advisory· Published Oct 31, 2016· Updated May 6, 2026
CVE-2016-8856
CVE-2016-8856
Description
Foxit Reader for Mac 2.1.0.0804 and earlier and Foxit Reader for Linux 2.1.0.0805 and earlier suffered from a vulnerability where weak file permissions could be exploited by attackers to execute arbitrary code. After the installation, Foxit Reader's core files were world-writable by default, allowing an attacker to overwrite them with backdoor code, which when executed by privileged user would result in Privilege Escalation, Code Execution, or both.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.foxitsoftware.com/support/security-bulletins.phpnvdPatchVendor Advisory
- www.securityfocus.com/bid/93608nvdTechnical DescriptionVDB Entry
- www.securitytracker.com/id/1037101nvd
News mentions
0No linked articles in our index yet.