Netskope Threat Labs

CVE-2009-0837

ATP Sandbox Adv. Heuristics

This detection identifies exploitation attempts targeting CVE-2009-0837, which has a UNKNOWN severity rating. Stack-based buffer overflow in Foxit Reader 3.0 before Build 1506, including 1120 and 1301, allows remote cyberattackers to execute arbitrary code via a long (1) relative path or (2) absolute path in the filename argument in an action, as demonstrated by the Open/Execute a file action.

First seen
March 2023
Last seen
October 2026
Alert Name
Document-PDF.Exploit.CVE-2009-0837
Text.Exploit.CVE-2009-0837