Remote Code Execution Vulnerability in XnView Classic for Windows Version 2.40 via Crafted .fpx File

Remote Code Execution Vulnerability in XnView Classic for Windows Version 2.40 via Crafted .fpx File

CVE-2017-9896 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to a "Read Access Violation on Control Flow starting at Xfpx!gffGetFormatInfo+0x0000000000013e8a."

Learn more about our Web Application Penetration Testing UK.