Corel records
54 published records for vendor corel.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 1 · 1.9%
- Pre-auth RCE
- 8
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-787 Out-of-bounds Write16
- CWE-125 Out-of-bounds Read12
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-190 Integer Overflow or Wraparound1
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-427 Uncontrolled Search Path Element1
The weakness classes this vendor ships most often: where to look.
CWEAll records
54 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
43Plan | CVE-2013-3248Weaponized | Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wintab32.dll file in tcorel · pdf fusion | Critical9.3 | — | 18.5% | Oct 3, 2013 |
40Plan | CVE-2013-0742Proof of concept | Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial of service (applicacorel · pdf fusion · CWE-119 | Critical9.3 | — | 9.0% | Oct 3, 2013 |
40Plan | CVE-2007-1735Proof of concept | Stack-based buffer overflow in Corel WordPerfect Office X3 (13.0.0.565) allows user-assisted remote attackers to execute arbitrary code via corel · wordperfect · CWE-119 | Critical9.3 | — | 8.7% | Mar 28, 2007 |
39Monitor | CVE-2007-2366Proof of concept | Buffer overflow in Corel Paint Shop Pro 11.20 allows user-assisted remote attackers to execute arbitrary code via a crafted .PNG file.corel · paint shop pro | High7.4 | — | 33.9% | Apr 30, 2007 |
39Monitor | CVE-2009-4251Proof of concept | Stack-based buffer overflow in Jasc Paint Shop Pro 8.10 (aka Corel Paint Shop Pro) allows user-assisted remote attackers to execute arbitrarcorel · paint shop pro · CWE-119 | Critical9.3 | — | 8.2% | Dec 9, 2009 |
39Monitor | CVE-2007-2921No exploit | Multiple buffer overflows in acgm.dll in the Corel / Micrografx ActiveCGM Browser ActiveX control before 7.1.4.19 allow remote attackers to corel · activecgm browser | Critical9.3 | — | 7.8% | Jun 14, 2007 |
39Monitor | CVE-2013-0733No exploit | Untrusted search path vulnerability in Corel PaintShop Pro X5 and X6 16.0.0.113, 15.2.0.2, and earlier allows local users to execute arbitracorel · paintshop pro x5 | Critical9.3 | — | 5.1% | Jun 5, 2014 |
36Monitor | CVE-2019-6114No exploit | An issue was discovered in Corel PaintShop Pro 2019 21.0.0.119.corel · paintshop pro 2019 · CWE-190 | High8.8 | — | 2.6% | Jun 19, 2019 |
34Monitor | CVE-2014-8393Proof of concept | DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusion.corel · coreldraw · CWE-427 | High7.8 | — | 8.3% | Aug 28, 2017 |
32Monitor | CVE-2021-38096No exploit | Coreip.dll in Corel PDF Fusion 2.6.2.0 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · pdf fusion · CWE-787 | High7.8 | — | 3.2% | Oct 1, 2021 |
32Monitor | CVE-2021-38097No exploit | Corel PDF Fusion 2.6.2.0 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · pdf fusion · CWE-787 | High7.8 | — | 2.9% | Oct 1, 2021 |
32Monitor | CVE-2016-9043No exploit | An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Engine (64-Bit) - 18.1.corel · coreldraw · CWE-787 | High7.8 | — | 2.6% | Apr 24, 2018 |
32Monitor | CVE-2021-38098No exploit | Corel PDF Fusion 2.6.2.0 is affected by a Heap Corruption vulnerability when parsing a crafted file.corel · pdf fusion · CWE-787 | High7.8 | — | 2.3% | Oct 1, 2021 |
32Monitor | CVE-2021-38103No exploit | IBJPG2.FLT in Corel Presentations 2020 20.0.0.200 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · presentations 2020 · CWE-787 | High7.8 | — | 2.2% | Oct 1, 2021 |
32Monitor | CVE-2021-38099No exploit | CDRRip.dll in Corel PhotoPaint Standard 2020 22.0.0.474 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · photopaint 2020 · CWE-787 | High7.8 | — | 2.2% | Oct 1, 2021 |
32Monitor | CVE-2016-8730No exploit | An of bound write / memory corruption vulnerability exists in the GIF parsing functionality of Core PHOTO-PAINT X8 18.1.0.661.corel · coreldraw photo paint x8 · CWE-787 | High7.8 | — | 2.2% | Apr 24, 2018 |
32Monitor | CVE-2021-38110No exploit | Word97Import200.dll in Corel WordPerfect 2020 20.0.0.200 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · wordperfect 2020 · CWE-787 | High7.8 | — | 2.0% | Oct 1, 2021 |
32Monitor | CVE-2021-38100No exploit | Corel PhotoPaint Standard 2020 22.0.0.474 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · photopaint 2020 · CWE-787 | High7.8 | — | 2.0% | Oct 1, 2021 |
32Monitor | CVE-2021-38101No exploit | CDRRip.dll in Corel PhotoPaint Standard 2020 22.0.0.474 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.corel · photopaint 2020 · CWE-787 | High7.8 | — | 2.0% | Oct 1, 2021 |
31Monitor | CVE-2017-2804No exploit | A remote out of bound write vulnerability exists in the TIFF parsing functionality of Core PHOTO-PAINT X8 18.1.0.661.corel · coreldraw photo paint x8 · CWE-787 | High7.8 | — | 1.2% | Apr 24, 2018 |
31Monitor | CVE-2017-2803No exploit | A remote out of bound write vulnerability exists in the TIFF parsing functionality of Core PHOTO-PAINT X8 version 18.1.0.661.corel · coreldraw photo paint x8 · CWE-787 | High7.8 | — | 1.1% | Apr 24, 2018 |
31Monitor | CVE-2022-43613No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.corel · coreldraw · CWE-121 | High7.8 | — | 0.9% | Mar 29, 2023 |
31Monitor | CVE-2022-43616No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.corel · coreldraw · CWE-125 | High7.8 | — | 0.9% | Mar 29, 2023 |
31Monitor | CVE-2022-43614No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.corel · coreldraw · CWE-787 | High7.8 | — | 0.9% | Mar 29, 2023 |
31Monitor | CVE-2022-43617No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.corel · coreldraw · CWE-787 | High7.8 | — | 0.9% | Mar 29, 2023 |
- CVE-2013-324843Plan
Untrusted search path vulnerability in Corel PDF Fusion 1.11 allows local users to gain privileges via a Trojan horse wintab32.dll file in t
CriticalCVSS 9.3WeaponizedEPSS 18%corel · pdf fusionOct 3, 2013
- CVE-2013-074240Plan
Stack-based buffer overflow in Corel PDF Fusion 1.11 allows remote attackers to execute arbitrary code or cause a denial of service (applica
CriticalCVSS 9.3Proof of conceptEPSS 9%corel · pdf fusionOct 3, 2013
- CVE-2007-173540Plan
Stack-based buffer overflow in Corel WordPerfect Office X3 (13.0.0.565) allows user-assisted remote attackers to execute arbitrary code via
CriticalCVSS 9.3Proof of conceptEPSS 9%corel · wordperfectMar 28, 2007
- CVE-2007-236639Monitor
Buffer overflow in Corel Paint Shop Pro 11.20 allows user-assisted remote attackers to execute arbitrary code via a crafted .PNG file.
HighCVSS 7.4Proof of conceptEPSS 34%corel · paint shop proApr 30, 2007
- CVE-2009-425139Monitor
Stack-based buffer overflow in Jasc Paint Shop Pro 8.10 (aka Corel Paint Shop Pro) allows user-assisted remote attackers to execute arbitrar
CriticalCVSS 9.3Proof of conceptEPSS 8%corel · paint shop proDec 9, 2009
- CVE-2007-292139Monitor
Multiple buffer overflows in acgm.dll in the Corel / Micrografx ActiveCGM Browser ActiveX control before 7.1.4.19 allow remote attackers to
CriticalCVSS 9.3No exploitEPSS 8%corel · activecgm browserJun 14, 2007
- CVE-2013-073339Monitor
Untrusted search path vulnerability in Corel PaintShop Pro X5 and X6 16.0.0.113, 15.2.0.2, and earlier allows local users to execute arbitra
CriticalCVSS 9.3No exploitEPSS 5%corel · paintshop pro x5Jun 5, 2014
- CVE-2019-611436Monitor
An issue was discovered in Corel PaintShop Pro 2019 21.0.0.119.
HighCVSS 8.8No exploitEPSS 3%corel · paintshop pro 2019Jun 19, 2019
- CVE-2014-839334Monitor
DLL Hijacking vulnerability in CorelDRAW X7, Corel Photo-Paint X7, Corel PaintShop Pro X7, Corel Painter 2015, and Corel PDF Fusion.
HighCVSS 7.8Proof of conceptEPSS 8%corel · coreldrawAug 28, 2017
- CVE-2021-3809632Monitor
Coreip.dll in Corel PDF Fusion 2.6.2.0 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 3%corel · pdf fusionOct 1, 2021
- CVE-2021-3809732Monitor
Corel PDF Fusion 2.6.2.0 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 3%corel · pdf fusionOct 1, 2021
- CVE-2016-904332Monitor
An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Engine (64-Bit) - 18.1.
HighCVSS 7.8No exploitEPSS 3%corel · coreldrawApr 24, 2018
- CVE-2021-3809832Monitor
Corel PDF Fusion 2.6.2.0 is affected by a Heap Corruption vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 2%corel · pdf fusionOct 1, 2021
- CVE-2021-3810332Monitor
IBJPG2.FLT in Corel Presentations 2020 20.0.0.200 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 2%corel · presentations 2020Oct 1, 2021
- CVE-2021-3809932Monitor
CDRRip.dll in Corel PhotoPaint Standard 2020 22.0.0.474 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 2%corel · photopaint 2020Oct 1, 2021
- CVE-2016-873032Monitor
An of bound write / memory corruption vulnerability exists in the GIF parsing functionality of Core PHOTO-PAINT X8 18.1.0.661.
HighCVSS 7.8No exploitEPSS 2%corel · coreldraw photo paint x8Apr 24, 2018
- CVE-2021-3811032Monitor
Word97Import200.dll in Corel WordPerfect 2020 20.0.0.200 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 2%corel · wordperfect 2020Oct 1, 2021
- CVE-2021-3810032Monitor
Corel PhotoPaint Standard 2020 22.0.0.474 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 2%corel · photopaint 2020Oct 1, 2021
- CVE-2021-3810132Monitor
CDRRip.dll in Corel PhotoPaint Standard 2020 22.0.0.474 is affected by an Out-of-bounds Write vulnerability when parsing a crafted file.
HighCVSS 7.8No exploitEPSS 2%corel · photopaint 2020Oct 1, 2021
- CVE-2017-280431Monitor
A remote out of bound write vulnerability exists in the TIFF parsing functionality of Core PHOTO-PAINT X8 18.1.0.661.
HighCVSS 7.8No exploitEPSS 1%corel · coreldraw photo paint x8Apr 24, 2018
- CVE-2017-280331Monitor
A remote out of bound write vulnerability exists in the TIFF parsing functionality of Core PHOTO-PAINT X8 version 18.1.0.661.
HighCVSS 7.8No exploitEPSS 1%corel · coreldraw photo paint x8Apr 24, 2018
- CVE-2022-4361331Monitor
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.
HighCVSS 7.8No exploitEPSS 1%corel · coreldrawMar 29, 2023
- CVE-2022-4361631Monitor
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.
HighCVSS 7.8No exploitEPSS 1%corel · coreldrawMar 29, 2023
- CVE-2022-4361431Monitor
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.
HighCVSS 7.8No exploitEPSS 1%corel · coreldrawMar 29, 2023
- CVE-2022-4361731Monitor
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Corel CorelDRAW Graphics Suite 23.5.0.506.
HighCVSS 7.8No exploitEPSS 1%corel · coreldrawMar 29, 2023