CVE-2007-2363

Description

Buffer overflow in IrfanView 4.00 and earlier allows user-assisted remote attackers to execute arbitrary code via a crafted .IFF file.

Risk Information

Base Score
6.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
31.083

Associated Vulnerability

VulnerabilityOS Platform
Update to IrfanView 4.01Windows
update irfanview 4.00 to latest versionWindows
update irfanview 4.00 (x64) to latest versionWindows
Update to IrfanView 4.01 (x64)Windows
Multiple Vulnerabilities are affected in IrfanView (64-bit) 4.00Windows
Multiple Vulnerabilities are affected in IrfanView 4.00Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-342180IrfanView (4.70)
PATCH-342180IrfanView (4.70)
PATCH-342181IrfanView (64-bit) (4.70)
PATCH-342181IrfanView (64-bit) (4.70)
PATCH-347987IrfanView (x64) (4.72)
PATCH-349811IrfanView (4.72)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234