3d
Vendor:
First CVE: Jan 28, 2019 · Active for 7 years
20
Total CVEs
More Total CVEs than 94% of tracked products
6.7
Avg CVEs / Year
Higher CVE frequency than 92% of tracked products
6.2
Avg CVSS
Higher Avg CVSS than 25% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact 3d over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 28, 2019
7 years ago
Most Recent CVE
May 7, 2021
1,905 days ago
CVE Severity & Scoring
3d20 CVEs
30%
20%
45%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local15 (75.0%)
Network5 (25.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low20 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None2 (10.0%)
Unknown0 (0.0%)
Required18 (90.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None20 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (20 CVEs).
20 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-20822CRITICAL An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.7.0.29430. It has an out-of-bounds write via incorrect image data. | Jun 4, 2020 | 9.8 | 31 | NO | NO |
CVE-2019-6985HIGH An issue was discovered in Foxit 3D Plugin Beta before 9.4.0.16807 for Foxit Reader and PhantomPDF. The application could encounter an Out-of-Bounds Read in Indexing or a Heap Over | Jan 28, 2019 | 8.8 | 29 | NO | NO |
CVE-2020-17412HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is required to exploit this vulner | Oct 13, 2020 | 7.8 | 26 | NO | NO |
CVE-2021-31472HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerabil | May 7, 2021 | 7.8 | 25 | NO | NO |
CVE-2021-31470HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.1.37576. User interaction is required to exploit this vulnerabil | May 7, 2021 | 7.8 | 25 | NO | NO |
CVE-2021-31468HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.3.37598. User interaction is required to exploit this vulnerabil | May 7, 2021 | 7.8 | 25 | NO | NO |
CVE-2021-31466HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.3.37598. User interaction is required to exploit this vulnerabil | May 7, 2021 | 7.8 | 25 | NO | NO |
CVE-2020-17413HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 10.0.0.35798. User interaction is required to exploit this vulner | Oct 13, 2020 | 7.8 | 25 | NO | NO |
CVE-2021-31465HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Reader 10.1.3.37598. User interaction is required to exploit this vulnerabil | May 7, 2021 | 7.8 | 24 | NO | NO |
CVE-2019-20831HIGH An issue was discovered in the 3D Plugin Beta for Foxit Reader and PhantomPDF before 9.5.0.20733. It has void data mishandling, causing a crash. | Jun 4, 2020 | 7.5 | 23 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (20 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (20 CVEs).
Media Mentions
Signals from CVEs in this product scope (20 CVEs).
Top CNAs Publishing CVEs For 3d
Top CWEs
Versions
No cataloged versions.