ZeroHour

Vulnerabilities

11 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2018-3923
+2 in the same advisory: …3922 …3921
A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.54.

A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.54. A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution.

NVD description · AI analysis pending
7.81% PoC
  • pl32 photoline
CVE-2017-12107
An memory corruption vulnerability exists in the .PCX parsing functionality of Computerinsel Photoline 20.02.

An memory corruption vulnerability exists in the .PCX parsing functionality of Computerinsel Photoline 20.02. A specially crafted .PCX file can cause a vulnerability resulting in potential code execution. An attacker can send a specific .PCX file to trigger this vulnerability.

NVD description · AI analysis pending
7.81%
  • pl32 photoline
CVE-2018-3889
A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data.

A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution.

NVD description · AI analysis pending
7.81% PoC
  • pl32 photoline
CVE-2018-3888
+2 in the same advisory: …3887 …3886
A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53.

A memory corruption vulnerability exists in the PCX-parsing functionality of Computerinsel Photoline 20.53. A specially crafted PCX image processed via the application can lead to an out-of-bounds write, overwriting arbitrary data. An attacker can deliver a PCX image to trigger this vulnerability and gain code execution.

NVD description · AI analysis pending
7.81% PoC
  • pl32 photoline
CVE-2017-2920
+2 in the same advisory: …12106 …2880
An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02.

An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02. A specially crafted .SVG file can cause a vulnerability resulting in memory corruption, which can potentially lead to arbitrary code execution. An attacker can send a specific .SVG file to trigger this vulnerability.

NVD description · AI analysis pending
7.82% PoC
  • pl32 photoline