Vulnerabilities > Irfanview

DATE CVE VULNERABILITY TITLE RISK
2022-09-16 CVE-2020-23560 Out-of-bounds Write vulnerability in Irfanview 4.54
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000001bcab.
local
low complexity
irfanview CWE-787
7.8
2022-07-18 CVE-2020-23561 Unspecified vulnerability in Irfanview 4.54
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000005722.
local
low complexity
irfanview
5.5
2022-07-18 CVE-2020-23562 Unspecified vulnerability in Irfanview 4.54
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000aefe.
local
low complexity
irfanview
5.5
2022-07-18 CVE-2020-23563 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview 4.54
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000002cba.
local
low complexity
irfanview CWE-119
5.5
2022-03-23 CVE-2021-46064 Classic Buffer Overflow vulnerability in Irfanview 4.59
IrfanView 4.59 is vulnerable to buffer overflow via the function at address 0x413c70 (in 32bit version of the binary).
local
low complexity
irfanview CWE-120
7.8
2021-12-15 CVE-2020-23545 Unspecified vulnerability in Irfanview 4.54
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ReadXPM_W+0x0000000000000531.
local
low complexity
irfanview
7.8
2021-11-05 CVE-2020-23565 Unspecified vulnerability in Irfanview 4.53
Irfanview v4.53 allows attackers to execute arbitrary code via a crafted JPEG 2000 file.
local
low complexity
irfanview
7.8
2021-11-05 CVE-2020-23566 Infinite Loop vulnerability in Irfanview 4.53
Irfanview v4.53 was discovered to contain an infinity loop via JPEG2000!ShowPlugInSaveOptions_W+0x1ecd8.
local
low complexity
irfanview CWE-835
5.5
2021-11-05 CVE-2020-23567 Divide By Zero vulnerability in Irfanview 4.53
Irfanview v4.53 allows attackers to to cause a denial of service (DoS) via a crafted JPEG 2000 file.
local
low complexity
irfanview CWE-369
5.5
2021-10-28 CVE-2020-23546 Unspecified vulnerability in Irfanview 4.54
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted XBM file, related to a "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FORMATS!ReadMosaic+0x0000000000000981.
local
low complexity
irfanview
7.8