Foxit Reader V9.7.2 Info
If you have a PDF form (with fillable fields):
Opening a File:
Navigation Pane (Sidebar):
Zooming & Rotating:
JavaScript Engine
V9.7.2’s JS engine lacks modern sandboxing controls. Attackers can craft malicious PDFs that: foxit reader v9.7.2
Update Mechanism
The built-in updater in v9.7.2 does not enforce TLS 1.2+ and is vulnerable to downgrade attacks. An attacker on the network can simulate the update server and supply a malicious update package. If you have a PDF form (with fillable fields):
Protected Mode
Protected Mode (sandbox) in v9.7.2 is weaker compared to v11+. It does not block all Win32k syscalls, making escape more feasible. Opening a File: