4.6
CVSSv2

CVE-2017-14272

Published: 11/09/2017 Updated: 18/09/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

XnView Classic for Windows Version 2.40 allows malicious users to execute arbitrary code or cause a denial of service via a crafted .jb2 file, related to a "User Mode Write AV starting at jbig2dec+0x000000000000595d."

Vulnerable Product Search on Vulmon Subscribe to Product

xnview xnview 2.40