Vulnerabilities > Bandisoft > ARK Library > 7.13.0.3

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2021-26635 Type Confusion vulnerability in Bandisoft ARK Library
In the code that verifies the file size in the ark library, it is possible to manipulate the offset read from the target file due to the wrong use of the data type.
local
low complexity
bandisoft CWE-843
7.8
2021-11-26 CVE-2021-26615 Integer Overflow or Wraparound vulnerability in Bandisoft ARK Library 7.13.0.3
ARK library allows attackers to execute remote code via the parameter(path value) of Ark_NormalizeAndDupPAthNameW function because of an integer overflow.
network
bandisoft CWE-190
6.8