Remote Code Execution Vulnerability in XnView Classic for Windows Version 2.40 via Crafted .fpx File

Remote Code Execution Vulnerability in XnView Classic for Windows Version 2.40 via Crafted .fpx File

CVE-2017-9902 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

XnView Classic for Windows Version 2.40 allows remote attackers to execute code via a crafted .fpx file, related to "Data from Faulting Address controls Code Flow starting at Xfpx!gffGetFormatInfo+0x0000000000020e91."

Learn more about our Web Application Penetration Testing UK.