CWE-704

Incorrect Type Conversion or Cast

Parent: CWE-664 - Improper Control of a Resource Through its Lifetime

The product does not correctly convert an object, resource, or structure from one type to a different type.

268 vulnerabilities with CWE-704
CVE-2018-14246 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via convertTocPDF Type Confusion
CVSS 8.8
CVE-2018-14245 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via closeDoc Method Type Confusion
CVSS 8.8
CVE-2018-14244 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via JavaScript calculateNow Type Confusion
CVSS 8.8
CVE-2018-14243 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via addPageOpenJSMessage Type Confusion
CVSS 8.8
CVE-2018-14242 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via addField Method Type Confusion
CVSS 8.8
CVE-2018-14241 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via addAnnot Method Type Confusion
CVSS 8.8
CVE-2018-11623 HIGH
Foxit Reader and PhantomPDF < 9.1.0.5096 - Remote Code Execution via addAdLayer Type Confusion
CVSS 8.8
CVE-2018-5057 HIGH
Adobe Acrobat and Reader <2018.011.20040 - RCE
CVSS 8.8
CVE-2018-5007 HIGH
Adobe Flash Player <30.0.0.113 - RCE
CVSS 8.8
CVE-2018-12812 CRITICAL
Adobe Acrobat and Reader <2018.011.20038 - RCE
CVSS 9.8
CVE-2018-12794 HIGH
Adobe Acrobat and Reader <2018.011.20040 - RCE
CVSS 8.8
CVE-2018-12793 MEDIUM
Adobe Acrobat and Reader <2018.011.20040 - RCE
CVSS 6.5
CVE-2018-14403 CRITICAL
MP4v2 <2.0.0 - Memory Corruption
CVSS 9.8
CVE-2018-14379 HIGH
MP4v2 2.0.0 - Memory Corruption
CVSS 8.8
CVE-2018-4953 HIGH
Adobe Acrobat <2018.011.20038 - RCE
CVSS 8.8
CVE-2018-4945 HIGH
Adobe Flash Player <29.0.0.171 - RCE
CVSS 8.8
CVE-2018-12453 HIGH
Redis < 5.0 - Denial of Service via XGROUP Command Type Confusion
CVSS 7.5
CVE-2018-4246 HIGH
Safari < 11.1.1 - Remote Code Execution via WebKit Type Confusion
CVSS 8.8
CVE-2018-4219 HIGH
Apple <10.13.5 - Privilege Escalation
CVSS 7.8
CVE-2018-7407 HIGH
Foxit Reader <9.1-PhantomPDF <9.1 - RCE
CVSS 8.8
CVE-2018-4944 CRITICAL
Adobe Flash Player <29.0.0.140 - RCE
CVSS 9.8
CVE-2018-9943 HIGH
Foxit Reader and PhantomPDF < 9.0.1.1049 - Remote Code Execution via openList Method Type Confusion
CVSS 8.8
CVE-2018-9942 HIGH
Foxit Reader < 9.0.1.1049 - Remote Code Execution via Record Remove Method
CVSS 8.8
CVE-2018-9941 HIGH
Foxit Reader and PhantomPDF < 9.0.1.1049 - Remote Code Execution via Record Append Method
CVSS 8.8
CVE-2018-9940 HIGH
Foxit Reader and PhantomPDF < 9.0.1.1049 - Remote Code Execution via Layout Sheet Attribute
CVSS 8.8
Details
Vulnerabilities 268