bandisoft records
11 published records for vendor bandisoft.
Researcher profile
- Entered KEV
- 1 · 9.1%
- Weaponized
- 1 · 9.1%
- Pre-auth RCE
- 1
- With a fix record
- 9.1%
- Median publish → KEV
- 1 days
Recurring classes
- CWE-122 Heap-based Buffer Overflow2
- CWE-121 Stack-based Buffer Overflow1
- CWE-125 Out-of-bounds Read1
- CWE-190 Integer Overflow or Wraparound1
- CWE-20 Improper Input Validation1
- CWE-284 Improper Access Control1
The weakness classes this vendor ships most often: where to look.
CWEAll records
11 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
95Now | CVE-2023-4863Weaponized | Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bogoogle · chrome · CWE-787 | High8.8 | KEV | 100.0% | Sep 12, 2023 |
39Monitor | CVE-2021-26623No exploit | Bandisoft ARK Library Out-of-bound Vulnerabilitybandisoft · bandizip · CWE-125 | Critical9.8 | — | 1.1% | Apr 1, 2022 |
35Monitor | CVE-2021-26615No exploit | bandisoft ARK library integer overflow vulnerabilitybandisoft · ark library · CWE-190 | High8.8 | — | 0.7% | Nov 26, 2021 |
31Monitor | CVE-2021-26635No exploit | Bandisoft ARK Library buffer overflow vulnerabilitybandisoft · ark library · CWE-121 | High7.8 | — | 1.2% | Jun 2, 2022 |
31Monitor | CVE-2021-26603No exploit | bandisoft ARK library heap overflow vulnerabilitybandisoft · ark library · CWE-122 | High7.8 | — | 0.7% | Sep 9, 2021 |
31Monitor | CVE-2025-33027No exploit | In Bandisoft Bandizip through 7.37, there is a Mark-of-the-Web Bypass Vulnerability.bandisoft · bandizip · CWE-830 | High7.8 | — | 0.3% | Apr 15, 2025 |
27Monitor | CVE-2014-1680No exploit | Untrusted search path vulnerability in Bandisoft Bandizip before 3.10 allows local users to gain privileges via a Trojan horse dwmapi.dll fibandisoft · bandizip | Medium6.9 | — | 0.5% | Feb 14, 2014 |
26Monitor | CVE-2024-45870Proof of concept | Bandisoft BandiView 7.05 is vulnerable to Incorrect Access Control in sub_0x3d80fc via a crafted POC file.bandisoft · bandiview · CWE-284 | Medium6.5 | — | 0.5% | Oct 3, 2024 |
25Monitor | CVE-2024-45871No exploit | Bandisoft BandiView 7.05 is Incorrect Access Control via sub_0x232bd8 resulting in denial of service (DOS).bandisoft · bandiview · CWE-20 | Medium6.3 | — | 0.4% | Oct 3, 2024 |
25Monitor | CVE-2024-45872No exploit | Bandisoft BandiView 7.05 is vulnerable to Buffer Overflow via sub_0x410d1d.bandisoft · bandiview · CWE-122 | Medium6.3 | — | 0.4% | Oct 3, 2024 |
22Monitor | CVE-2024-22526Proof of concept | Buffer Overflow vulnerability in bandisoft bandiview v7.0, allows local attackers to cause a denial of service (DoS) via exr image file.bandisoft · bandiview · CWE-120 | Medium5.5 | — | 0.4% | Apr 12, 2024 |
- CVE-2023-486395Now
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bo
HighCVSS 8.8KEVWeaponizedEPSS 100%google · chromeSep 12, 2023
- CVE-2021-2662339Monitor
Bandisoft ARK Library Out-of-bound Vulnerability
CriticalCVSS 9.8No exploitEPSS 1%bandisoft · bandizipApr 1, 2022
- CVE-2021-2661535Monitor
bandisoft ARK library integer overflow vulnerability
HighCVSS 8.8No exploitEPSS 1%bandisoft · ark libraryNov 26, 2021
- CVE-2021-2663531Monitor
Bandisoft ARK Library buffer overflow vulnerability
HighCVSS 7.8No exploitEPSS 1%bandisoft · ark libraryJun 2, 2022
- CVE-2021-2660331Monitor
bandisoft ARK library heap overflow vulnerability
HighCVSS 7.8No exploitEPSS 1%bandisoft · ark librarySep 9, 2021
- CVE-2025-3302731Monitor
In Bandisoft Bandizip through 7.37, there is a Mark-of-the-Web Bypass Vulnerability.
HighCVSS 7.8No exploitEPSS 0%bandisoft · bandizipApr 15, 2025
- CVE-2014-168027Monitor
Untrusted search path vulnerability in Bandisoft Bandizip before 3.10 allows local users to gain privileges via a Trojan horse dwmapi.dll fi
MediumCVSS 6.9No exploitEPSS 1%bandisoft · bandizipFeb 14, 2014
- CVE-2024-4587026Monitor
Bandisoft BandiView 7.05 is vulnerable to Incorrect Access Control in sub_0x3d80fc via a crafted POC file.
MediumCVSS 6.5Proof of conceptEPSS 0%bandisoft · bandiviewOct 3, 2024
- CVE-2024-4587125Monitor
Bandisoft BandiView 7.05 is Incorrect Access Control via sub_0x232bd8 resulting in denial of service (DOS).
MediumCVSS 6.3No exploitEPSS 0%bandisoft · bandiviewOct 3, 2024
- CVE-2024-4587225Monitor
Bandisoft BandiView 7.05 is vulnerable to Buffer Overflow via sub_0x410d1d.
MediumCVSS 6.3No exploitEPSS 0%bandisoft · bandiviewOct 3, 2024
- CVE-2024-2252622Monitor
Buffer Overflow vulnerability in bandisoft bandiview v7.0, allows local attackers to cause a denial of service (DoS) via exr image file.
MediumCVSS 5.5Proof of conceptEPSS 0%bandisoft · bandiviewApr 12, 2024