XnView kayıtları
xnview üreticisine ait 174 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 14
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer133
- CWE-787 Out-of-bounds Write19
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')5
- CWE-189 Numeric Errors4
- CWE-122 Heap-based Buffer Overflow1
- CWE-416 Use After Free1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
174 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2013-2577Kavram kanıtı | Buffer overflow in XnView before 2.04 allows remote attackers to execute arbitrary code via a crafted PCT file.xnview · xnview · CWE-119 | Kritik9,3 | — | %11,8 | 9 Ağu 2013 |
40Planlayın | CVE-2010-1932Kavram kanıtı | Heap-based buffer overflow in XnView 1.97.4 and possibly earlier allows remote attackers to execute arbitrary code via a MultiBitMap (MBM) fxnview · xnview · CWE-119 | Kritik9,3 | — | %10,8 | 16 Haz 2010 |
40Planlayın | CVE-2012-4988Kavram kanıtı | Heap-based buffer overflow in the xjpegls.dll (aka JLS, JPEG-LS, or JPEG lossless) format plugin in XnView 1.99 and 1.99.1 allows remote attxnview · xnview · CWE-119 | Kritik9,3 | — | %9,9 | 9 Tem 2014 |
40Planlayın | CVE-2013-3941İstismar yok | Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ marker, which triggers xnview · xnview · CWE-787 | Kritik9,8 | — | %2,8 | 2 Oca 2020 |
39İzleyin | CVE-2013-3493İstismar yok | XnView 2.03 has an integer overflow vulnerabilityxnview · xnview · CWE-190 | Kritik9,8 | — | %1,6 | 27 Oca 2020 |
39İzleyin | CVE-2013-3492İstismar yok | XnView 2.03 has a stack-based buffer overflow vulnerabilityxnview · xnview · CWE-787 | Kritik9,8 | — | %1,5 | 27 Oca 2020 |
39İzleyin | CVE-2023-52174İstismar yok | XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.xnview · xnview classic · CWE-787 | Kritik9,8 | — | %0,7 | 29 Ara 2023 |
39İzleyin | CVE-2023-52173İstismar yok | XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0.xnview · xnview classic · CWE-787 | Kritik9,8 | — | %0,6 | 29 Ara 2023 |
38İzleyin | CVE-2009-4001İstismar yok | Integer overflow in XnView before 1.97.2 might allow remote attackers to execute arbitrary code via a DICOM image with crafted dimensions, lxnview · xnview · CWE-189 | Kritik9,3 | — | %4,6 | 15 Mar 2010 |
38İzleyin | CVE-2012-0685İstismar yok | Integer overflow in XnViewer (aka XnView) before 1.98.5 allows remote attackers to execute arbitrary code via a crafted file containing PSD xnview · xnview · CWE-189 | Kritik9,3 | — | %3,7 | 9 May 2012 |
38İzleyin | CVE-2012-0684İstismar yok | Integer overflow in XnViewer (aka XnView) before 1.98.5 allows remote attackers to execute arbitrary code via a crafted file containing PSD xnview · xnview · CWE-189 | Kritik9,3 | — | %3,7 | 9 May 2012 |
38İzleyin | CVE-2013-3938İstismar yok | Integer overflow in xnview.exe in XnView 2.13 allows remote attackers to execute arbitrary code via a large NUM_ELEMENTS field in an IFD_ENTxnview · xnview · CWE-189 | Kritik9,3 | — | %3,5 | 18 Mar 2014 |
35İzleyin | CVE-2024-11950İstismar yok | XnSoft XnView Classic RWZ File Parsing Integer Underflow Remote Code Execution Vulnerabilityxnview · xnview · CWE-191 | Yüksek8,8 | — | %0,5 | 11 Ara 2024 |
33İzleyin | CVE-2008-1461Kavram kanıtı | Buffer overflow in XnView 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long filename argument on the commandxnview · xnview · CWE-119 | Yüksek7,6 | — | %11,3 | 24 Mar 2008 |
32İzleyin | CVE-2013-3247İstismar yok | Heap-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted RLE compressexnview · xnview · CWE-787 | Yüksek7,8 | — | %2,4 | 2 Oca 2020 |
32İzleyin | CVE-2013-3246İstismar yok | Stack-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted image layer xnview · xnview · CWE-787 | Yüksek7,8 | — | %2,4 | 2 Oca 2020 |
32İzleyin | CVE-2019-9969İstismar yok | XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other ixnview · xnview classic · CWE-119 | Yüksek7,8 | — | %2,0 | 23 Mar 2019 |
32İzleyin | CVE-2013-3937İstismar yok | Heap-based buffer overflow in xnview.exe in XnView before 2.13 allows remote attackers to execute arbitrary code via the biBitCount field inxnview · xnview · CWE-787 | Yüksek7,8 | — | %1,7 | 2 Oca 2020 |
32İzleyin | CVE-2013-3939İstismar yok | xnview.exe in XnView before 2.13 does not properly handle RLE strip lengths during processing of RGB files, which allows remote attackers toxnview · xnview · CWE-787 | Yüksek7,8 | — | %1,7 | 2 Oca 2020 |
31İzleyin | CVE-2017-9897İstismar yok | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV stxnview · xnview · CWE-119 | Yüksek7,8 | — | %1,6 | 5 Tem 2017 |
31İzleyin | CVE-2017-9896İstismar yok | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "Read Access Violationxnview · xnview · CWE-119 | Yüksek7,8 | — | %1,6 | 5 Tem 2017 |
31İzleyin | CVE-2017-9898İstismar yok | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV stxnview · xnview · CWE-119 | Yüksek7,8 | — | %1,6 | 5 Tem 2017 |
31İzleyin | CVE-2017-9899İstismar yok | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to "Data from Faulting Addrxnview · xnview · CWE-119 | Yüksek7,8 | — | %1,6 | 5 Tem 2017 |
31İzleyin | CVE-2017-8381İstismar yok | XnView Classic for Windows Version 2.40 allows user-assisted remote attackers to execute code via a crafted .mkv file that is mishandled durxnview · xnview · CWE-119 | Yüksek7,8 | — | %1,6 | 5 Tem 2017 |
31İzleyin | CVE-2017-9529İstismar yok | XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV stxnview · xnview · CWE-119 | Yüksek7,8 | — | %1,6 | 5 Tem 2017 |
- CVE-2013-257741Planlayın
Buffer overflow in XnView before 2.04 allows remote attackers to execute arbitrary code via a crafted PCT file.
KritikCVSS 9,3Kavram kanıtıEPSS %12xnview · xnview9 Ağu 2013
- CVE-2010-193240Planlayın
Heap-based buffer overflow in XnView 1.97.4 and possibly earlier allows remote attackers to execute arbitrary code via a MultiBitMap (MBM) f
KritikCVSS 9,3Kavram kanıtıEPSS %11xnview · xnview16 Haz 2010
- CVE-2012-498840Planlayın
Heap-based buffer overflow in the xjpegls.dll (aka JLS, JPEG-LS, or JPEG lossless) format plugin in XnView 1.99 and 1.99.1 allows remote att
KritikCVSS 9,3Kavram kanıtıEPSS %10xnview · xnview9 Tem 2014
- CVE-2013-394140Planlayın
Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ marker, which triggers
KritikCVSS 9,8İstismar yokEPSS %3xnview · xnview2 Oca 2020
- CVE-2013-349339İzleyin
XnView 2.03 has an integer overflow vulnerability
KritikCVSS 9,8İstismar yokEPSS %2xnview · xnview27 Oca 2020
- CVE-2013-349239İzleyin
XnView 2.03 has a stack-based buffer overflow vulnerability
KritikCVSS 9,8İstismar yokEPSS %2xnview · xnview27 Oca 2020
- CVE-2023-5217439İzleyin
XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.
KritikCVSS 9,8İstismar yokEPSS %1xnview · xnview classic29 Ara 2023
- CVE-2023-5217339İzleyin
XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0.
KritikCVSS 9,8İstismar yokEPSS %1xnview · xnview classic29 Ara 2023
- CVE-2009-400138İzleyin
Integer overflow in XnView before 1.97.2 might allow remote attackers to execute arbitrary code via a DICOM image with crafted dimensions, l
KritikCVSS 9,3İstismar yokEPSS %5xnview · xnview15 Mar 2010
- CVE-2012-068538İzleyin
Integer overflow in XnViewer (aka XnView) before 1.98.5 allows remote attackers to execute arbitrary code via a crafted file containing PSD
KritikCVSS 9,3İstismar yokEPSS %4xnview · xnview9 May 2012
- CVE-2012-068438İzleyin
Integer overflow in XnViewer (aka XnView) before 1.98.5 allows remote attackers to execute arbitrary code via a crafted file containing PSD
KritikCVSS 9,3İstismar yokEPSS %4xnview · xnview9 May 2012
- CVE-2013-393838İzleyin
Integer overflow in xnview.exe in XnView 2.13 allows remote attackers to execute arbitrary code via a large NUM_ELEMENTS field in an IFD_ENT
KritikCVSS 9,3İstismar yokEPSS %3xnview · xnview18 Mar 2014
- CVE-2024-1195035İzleyin
XnSoft XnView Classic RWZ File Parsing Integer Underflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0xnview · xnview11 Ara 2024
- CVE-2008-146133İzleyin
Buffer overflow in XnView 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long filename argument on the command
YüksekCVSS 7,6Kavram kanıtıEPSS %11xnview · xnview24 Mar 2008
- CVE-2013-324732İzleyin
Heap-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted RLE compresse
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview2 Oca 2020
- CVE-2013-324632İzleyin
Stack-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted image layer
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview2 Oca 2020
- CVE-2019-996932İzleyin
XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other i
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview classic23 Mar 2019
- CVE-2013-393732İzleyin
Heap-based buffer overflow in xnview.exe in XnView before 2.13 allows remote attackers to execute arbitrary code via the biBitCount field in
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview2 Oca 2020
- CVE-2013-393932İzleyin
xnview.exe in XnView before 2.13 does not properly handle RLE strip lengths during processing of RGB files, which allows remote attackers to
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview2 Oca 2020
- CVE-2017-989731İzleyin
XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV st
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview5 Tem 2017
- CVE-2017-989631İzleyin
XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "Read Access Violation
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview5 Tem 2017
- CVE-2017-989831İzleyin
XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV st
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview5 Tem 2017
- CVE-2017-989931İzleyin
XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to "Data from Faulting Addr
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview5 Tem 2017
- CVE-2017-838131İzleyin
XnView Classic for Windows Version 2.40 allows user-assisted remote attackers to execute code via a crafted .mkv file that is mishandled dur
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview5 Tem 2017
- CVE-2017-952931İzleyin
XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "User Mode Write AV st
YüksekCVSS 7,8İstismar yokEPSS %2xnview · xnview5 Tem 2017