Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2018-06-20 CVE-2018-11706 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.2
FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578dd8, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe.
local
low complexity
faststone CWE-119
7.8
2018-06-20 CVE-2018-11705 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.2
FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578cc4, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe.
local
low complexity
faststone CWE-119
7.8
2018-06-20 CVE-2018-11704 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.2
FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00402d7d, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe.
local
low complexity
faststone CWE-119
7.8
2018-06-20 CVE-2018-11703 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.2
FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00402d6a, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe.
local
low complexity
faststone CWE-119
7.8
2018-06-20 CVE-2018-11702 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.2
FastStone Image Viewer 6.2 has a User Mode Write AV at 0x00578cb3, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe.
local
low complexity
faststone CWE-119
7.8
2018-06-20 CVE-2018-11701 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Faststone Image Viewer 6.2
FastStone Image Viewer 6.2 has a User Mode Write AV at 0x005cb509, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe.
local
low complexity
faststone CWE-119
7.8
2018-06-19 CVE-2018-12519 Unrestricted Upload of File with Dangerous Type vulnerability in Codenx Shopnx
An issue was discovered in ShopNx through 2017-11-17.
network
low complexity
codenx CWE-434
8.8
2018-06-19 CVE-2018-12294 Use After Free vulnerability in Webkit Webkitgtk+
WebCore/platform/graphics/texmap/TextureMapperLayer.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.2, is vulnerable to a use after free for a WebCore::TextureMapperLayer object.
network
low complexity
webkit CWE-416
8.8
2018-06-19 CVE-2018-12293 Integer Overflow or Wraparound vulnerability in multiple products
The getImageData function in the ImageBufferCairo class in WebCore/platform/graphics/cairo/ImageBufferCairo.cpp in WebKit, as used in WebKitGTK+ prior to version 2.20.3 and WPE WebKit prior to version 2.20.1, is vulnerable to a heap-based buffer overflow triggered by an integer overflow, which could be abused by crafted HTML content.
network
low complexity
canonical webkitgtk wpewebkit CWE-190
8.8
2018-06-19 CVE-2018-11726 Out-of-bounds Write vulnerability in Libmobi Project Libmobi 0.3
The mobi_decode_font_resource function in util.c in Libmobi 0.3 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted mobi file.
network
low complexity
libmobi-project CWE-787
8.8