Vulnerabilities > Irfanview > High

DATE CVE VULNERABILITY TITLE RISK
2021-10-28 CVE-2020-23546 Unspecified vulnerability in Irfanview 4.54
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted XBM file, related to a "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FORMATS!ReadMosaic+0x0000000000000981.
local
low complexity
irfanview
7.8
2021-10-28 CVE-2020-23549 Unspecified vulnerability in Irfanview 4.54
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted .cr2 file, related to a "Data from Faulting Address controls Branch Selection starting at FORMATS!GetPlugInInfo+0x00000000000047f6".
local
low complexity
irfanview
7.8
2021-09-28 CVE-2021-29360 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in FORMATS!Read_Utah_RLE+0x37a of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted RLE file.
local
low complexity
irfanview CWE-787
7.8
2021-09-28 CVE-2021-29361 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in FORMATS!Read_Utah_RLE+0x340 of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted RLE file.
local
low complexity
irfanview CWE-787
7.8
2021-09-28 CVE-2021-29362 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in FORMATS!ReadRAS_W+0xa30 of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted RLE file.
local
low complexity
irfanview CWE-787
7.8
2021-09-28 CVE-2021-29363 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in FORMATS!ReadRAS_W+0xa74 of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted RLE file.0xa74
local
low complexity
irfanview CWE-787
7.8
2021-09-28 CVE-2021-29364 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in Formats!ReadRAS_W+0x1001 of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted RLE file.
local
low complexity
irfanview CWE-787
7.8
2021-09-28 CVE-2021-29366 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in FORMATS!GetPlugInInfo+0x2de9 of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted RLE file.
local
low complexity
irfanview CWE-787
7.8
2021-09-28 CVE-2021-29367 Out-of-bounds Write vulnerability in Irfanview 4.57
A buffer overflow vulnerability in WPG+0x1dda of Irfanview 4.57 allows attackers to execute arbitrary code via a crafted WPG file.
local
low complexity
irfanview CWE-787
7.8
2021-02-17 CVE-2021-27224 Out-of-bounds Write vulnerability in Irfanview WPG
The WPG plugin before 3.1.0.0 for IrfanView 4.57 has a user-mode write access violation starting at WPG+0x0000000000012ec6, which might allow remote attackers to execute arbitrary code.
network
low complexity
irfanview CWE-787
7.5