VYPR

Vendor CVEs

Xnview

All CVEs

178 total · sorted by risk
  • CVE-2023-52174CriDec 29, 2023
    risk 0.64cvss 9.8epss 0.01

    XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3125D6.

  • CVE-2023-52173CriDec 29, 2023
    risk 0.64cvss 9.8epss 0.01

    XnView Classic before 2.51.3 on Windows has a Write Access Violation at xnview.exe+0x3ADBD0.

  • CVE-2013-3493CriJan 27, 2020
    risk 0.64cvss 9.8epss 0.02

    XnView 2.03 has an integer overflow vulnerability

  • CVE-2013-3492CriJan 27, 2020
    risk 0.64cvss 9.8epss 0.02

    XnView 2.03 has a stack-based buffer overflow vulnerability

  • CVE-2013-3941CriJan 2, 2020
    risk 0.64cvss 9.8epss 0.03

    Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ marker, which triggers an incorrect memory allocation, or (2) the lqcd field in a QCD marker in a crafted JPEG2000 file, which leads to a heap-based buffer…

  • CVE-2024-11950HigDec 12, 2024
    risk 0.57cvss 8.8epss 0.00

    XnSoft XnView Classic RWZ File Parsing Integer Underflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of XnSoft XnView Classic. User interaction is required to exploit this vulnerability in…

  • CVE-2023-46587HigOct 27, 2023
    risk 0.51cvss 7.8epss 0.00

    Buffer Overflow vulnerability in XnView Classic v.2.51.5 allows a local attacker to execute arbitrary code via a crafted TIF file.

  • CVE-2023-43251HigOct 19, 2023
    risk 0.51cvss 7.8epss 0.01

    XNSoft Nconvert 7.136 has an Exception Handler Chain Corrupted via a crafted image file. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution.

  • CVE-2023-43252HigOct 19, 2023
    risk 0.51cvss 7.8epss 0.01

    XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow via a crafted image file.

  • CVE-2023-43250HigOct 18, 2023
    risk 0.51cvss 7.8epss 0.01

    XNSoft Nconvert 7.136 is vulnerable to Buffer Overflow. There is a User Mode Write AV via a crafted image file. Attackers could exploit this issue for a Denial of Service (DoS) or possibly to achieve code execution.

  • CVE-2021-28835HigAug 11, 2023
    risk 0.51cvss 7.8epss 0.00

    Buffer Overflow vulnerability in XNView before 2.50, allows local attackers to execute arbitrary code via crafted GEM bitmap file.

  • CVE-2021-28427HigAug 11, 2023
    risk 0.51cvss 7.8epss 0.00

    Buffer Overflow vulnerability in XNView version 2.49.3, allows local attackers to execute arbitrary code via crafted TIFF file.

  • CVE-2013-3939HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    xnview.exe in XnView before 2.13 does not properly handle RLE strip lengths during processing of RGB files, which allows remote attackers to execute arbitrary code via the RLE strip size field in a RGB file, which leads to an unexpected sign extension error and a heap-based…

  • CVE-2013-3937HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Heap-based buffer overflow in xnview.exe in XnView before 2.13 allows remote attackers to execute arbitrary code via the biBitCount field in a BMP file.

  • CVE-2013-3247HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Heap-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted RLE compressed layer in an XCF file.

  • CVE-2013-3246HigJan 2, 2020
    risk 0.51cvss 7.8epss 0.02

    Stack-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted image layer in an XCF file.

  • CVE-2019-17262HigOct 8, 2019
    risk 0.51cvss 7.8epss 0.00

    XnView Classic 2.49.1 allows a User Mode Write AV starting at Xwsq+0x0000000000001fc0.

  • CVE-2019-17261HigOct 8, 2019
    risk 0.51cvss 7.8epss 0.00

    XnView Classic 2.49.1 allows a User Mode Write AV starting at Xwsq+0x0000000000001e51.

  • CVE-2019-13262HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x00000000003283eb.

  • CVE-2019-13261HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000328384.

  • CVE-2019-13260HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000327a07.

  • CVE-2019-13259HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000032e566.

  • CVE-2019-13258HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000328165.

  • CVE-2019-13257HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x00000000003273aa.

  • CVE-2019-13256HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000032e849.

  • CVE-2019-13255HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000327464.

  • CVE-2019-13254HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000032e808.

  • CVE-2019-13253HigJul 4, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000385474.

  • CVE-2019-13085HigJun 30, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000030ecfa.

  • CVE-2019-13084HigJun 30, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000026b739.

  • CVE-2019-13083HigJun 30, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000384e2a.

  • CVE-2019-9969HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.02

    XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to xnview+0x385399.

  • CVE-2019-9968HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlQueueWorkItem.

  • CVE-2019-9967HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlPrefixUnicodeString.

  • CVE-2019-9966HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView Classic 2.48 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to xnview+0x38536c.

  • CVE-2019-9965HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlReAllocateHeap.

  • CVE-2019-9964HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlpNtMakeTemporaryKey.

  • CVE-2019-9963HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to ntdll!RtlFreeHeap.

  • CVE-2019-9962HigMar 24, 2019
    risk 0.51cvss 7.8epss 0.01

    XnView MP 0.93.1 on Windows allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file, related to VCRUNTIME140!memcpy.

  • CVE-2018-15176HigAug 8, 2018
    risk 0.51cvss 7.8epss 0.01

    XnView 2.45 allows remote attackers to cause a denial of service (User Mode Write AV starting at MSVCR120!memcpy+0x0000000000000074 and application crash) or possibly have unspecified other impact via a crafted RLE file.

  • CVE-2018-15175HigAug 8, 2018
    risk 0.51cvss 7.8epss 0.01

    XnView 2.45 allows remote attackers to cause a denial of service (User Mode Write AV starting at Qt5Core!QVariant::~QVariant+0x0000000000000014 and application crash) or possibly have unspecified other impact via a crafted RLE file.

  • CVE-2018-15174HigAug 8, 2018
    risk 0.51cvss 7.8epss 0.01

    XnView 2.45 allows remote attackers to cause a denial of service (Read Access Violation at the Instruction Pointer and application crash) or possibly have unspecified other impact via a crafted ICO file.

  • CVE-2017-15789HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x00000000000048e7."

  • CVE-2017-15788HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x0000000000002d83."

  • CVE-2017-15787HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "Data Execution Prevention Violation starting at xnview+0x0000000000580063."

  • CVE-2017-15786HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to a "Read Access Violation starting at CADImage+0x00000000001a78db."

  • CVE-2017-15785HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "Data Execution Prevention Violation near NULL starting at Unknown Symbol @ 0x0000000000000000 called from…

  • CVE-2017-15784HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnview+0x0000000000370074."

  • CVE-2017-15783HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .dwg file, related to "Data from Faulting Address controls Branch Selection starting at CADImage+0x0000000000285ce1."

  • CVE-2017-15782HigOct 22, 2017
    risk 0.51cvss 7.8epss 0.01

    XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to a "User Mode Write AV starting at CADImage+0x00000000000032eb."

Page 1 of 4