Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-07-05 CVE-2017-9920 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!LdrpResSearchResourceInsideDirectory+0x000000000000029e."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9919 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!LdrpResCompareResourceNames+0x0000000000000087."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9918 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbitrary code via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at KERNELBASE!QueryOptionalDelayLoadedAPI+0x0000000000000c42."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9917 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at ntdll_77df0000!RtlFreeHandle+0x0000000000000218."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9916 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview Tools 4.50
IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!RtlFreeHandle+0x00000000000001b6."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9915 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Irfanview and Tools
IrfanView version 4.44 (32bit) with TOOLS plugin 4.50 allows attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "Read Access Violation on Block Data Move starting at ntdll_77df0000!memcpy+0x0000000000000033."
local
low complexity
irfanview CWE-119
7.8
2017-07-05 CVE-2017-9914 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview 2.40
XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .bie file, related to a "Read Access Violation on Block Data Move starting at Xjbig+0x000000000000121b."
local
low complexity
xnview CWE-119
7.8
2017-07-05 CVE-2017-9913 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview 2.40
XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!TpAllocCleanupGroup+0x00000000000003d7."
local
low complexity
xnview CWE-119
7.8
2017-07-05 CVE-2017-9912 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview 2.40
XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!RtlpFreeHeap+0x0000000000000393."
local
low complexity
xnview CWE-119
7.8
2017-07-05 CVE-2017-9911 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Xnview 2.40
XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at Xfpx+0x0000000000010e81."
local
low complexity
xnview CWE-119
7.8