Show filters
109 Total Results
Displaying 11-20 of 109
Sort by:
Attacker Value
Unknown

CVE-2020-23550

Disclosure Date: September 16, 2022 (last updated October 08, 2023)
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e82.
Attacker Value
Unknown

CVE-2020-23563

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000002cba.
Attacker Value
Unknown

CVE-2020-23562

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x000000000000aefe.
Attacker Value
Unknown

CVE-2020-23561

Disclosure Date: July 18, 2022 (last updated October 07, 2023)
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ShowPlugInSaveOptions_W+0x0000000000005722.
Attacker Value
Unknown

CVE-2021-46064

Disclosure Date: March 23, 2022 (last updated October 07, 2023)
IrfanView 4.59 is vulnerable to buffer overflow via the function at address 0x413c70 (in 32bit version of the binary). The vulnerability triggers when the user opens malicious .tiff image.
Attacker Value
Unknown

CVE-2021-24867

Disclosure Date: February 21, 2022 (last updated October 07, 2023)
Numerous Plugins and Themes from the AccessPress Themes (aka Access Keys) vendor are backdoored due to their website being compromised. Only plugins and themes downloaded via the vendor website are affected, and those hosted on wordpress.org are not. However, all of them were updated or removed to avoid any confusion
Attacker Value
Unknown

CVE-2020-23545

Disclosure Date: December 15, 2021 (last updated October 07, 2023)
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ReadXPM_W+0x0000000000000531.
Attacker Value
Unknown

CVE-2020-23565

Disclosure Date: November 05, 2021 (last updated November 29, 2024)
Irfanview v4.53 allows attackers to execute arbitrary code via a crafted JPEG 2000 file. Related to a "Data from Faulting Address controls Branch Selection starting at JPEG2000!ShowPlugInSaveOptions_W+0x0000000000032850".
Attacker Value
Unknown

CVE-2020-23566

Disclosure Date: November 05, 2021 (last updated November 29, 2024)
Irfanview v4.53 was discovered to contain an infinity loop via JPEG2000!ShowPlugInSaveOptions_W+0x1ecd8.
Attacker Value
Unknown

CVE-2020-23567

Disclosure Date: November 05, 2021 (last updated November 29, 2024)
Irfanview v4.53 allows attackers to to cause a denial of service (DoS) via a crafted JPEG 2000 file. Related to "Integer Divide By Zero starting at JPEG2000!ShowPlugInSaveOptions_W+0x00000000000082ea"