Skip to content
Noroxi

winimage records

5 published records for vendor winimage.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    5 records
    • CVE-2007-4962
      39Monitor

      Directory traversal vulnerability in WinImage 8.10 and earlier allows user-assisted remote attackers to create or overwrite arbitrary files

      CriticalCVSS 9.3Proof of conceptEPSS 6%

      winimage · winimageSep 18, 2007

    • CVE-2007-2758
      39Monitor

      Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains

      CriticalCVSS 9.3No exploitEPSS 6%

      winimage · winimageMay 18, 2007

    • CVE-2007-4963
      38Monitor

      Visual truncation vulnerability in WinImage 8.10 and earlier allows remote attackers to spoof a destination filename via a long sequence of

      CriticalCVSS 9.3No exploitEPSS 2%

      winimage · winimageSep 18, 2007

    • CVE-2010-5253
      27Monitor

      Untrusted search path vulnerability in WinImage 8.50 allows local users to gain privileges via a Trojan horse wnaspi32.dll file in the curre

      MediumCVSS 6.9No exploitEPSS 1%

      winimage · winimageSep 7, 2012

    • CVE-2007-4964
      21Monitor

      WinImage 8.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via an invalid BPB_BytsPerSec field in the he

      MediumCVSS 5.0Proof of conceptEPSS 3%

      winimage · winimageSep 18, 2007