NXQ from NCSC of Vietnam

2 exploits Active since Oct 2021
CVE-2020-23545 WRITEUP HIGH WRITEUP
IrfanView 4.54 - Memory Corruption
IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!ReadXPM_W+0x0000000000000531.
CVSS 7.8
CVE-2020-23546 WRITEUP HIGH WRITEUP
IrfanView 4.54 - DoS
IrfanView 4.54 allows attackers to cause a denial of service or possibly other unspecified impacts via a crafted XBM file, related to a "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FORMATS!ReadMosaic+0x0000000000000981.
CVSS 7.8