Lucene search

K
cve[email protected]CVE-2008-1461
HistoryMar 24, 2008 - 6:44 p.m.

CVE-2008-1461

2008-03-2418:44:00
CWE-119
web.nvd.nist.gov
24
cve-2008-1461
buffer overflow
xnview
remote attackers
arbitrary code
long filename argument

7.6 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

Low

0.127 Low

EPSS

Percentile

95.5%

Buffer overflow in XnView 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long filename argument on the command line. NOTE: it is unclear whether there are common handler configurations in which this argument is controlled by an attacker.

Affected configurations

NVD
Node
xnviewxnviewMatch1.92.1
CPENameOperatorVersion
xnview:xnviewxnvieweq1.92.1

7.6 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

7.8 High

AI Score

Confidence

Low

0.127 Low

EPSS

Percentile

95.5%

Related for CVE-2008-1461