Foxit PDF Editor
cpe:2.3:a:foxit:pdf_editor:*:*:*:*:*:*:*, +1 more
- <= 2025.2.0.33046
- <= 2024.4.1.27687
- <= 2023.3.0.23028
- 14.0.0.33046
- 13.2.0.23874
A vulnerability allowing signature spoofing has been identified in Foxit PDF Editor and Reader versions prior to 2025.2.1. This issue arises when Optional Content Groups (OCG) are supported, as the state property of an OCG is only considered at runtime and not included in the digital signature computation. An attacker can exploit this by using JavaScript or PDF triggers to change the visibility of OCG content after the document has been signed, thereby modifying the visual content of a signed PDF without invalidating the signature. This creates a discrepancy between the signed content and what the signer or verifier observes, compromising the integrity of the digital signature.
Exploitation of this vulnerability leads to improper verification of cryptographic signatures, allowing for manipulation of document content. This could deceive users into trusting altered documents, undermining the reliability of digital signatures.
Users can update to Foxit PDF Editor or Reader versions 2025.2.1, 14.0.1, or 13.2.1. Instructions for updating are available on the Foxit website.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.