CVE-1999-1112

IrfanView32 <3.07 - RCE

Title source: llm
STIX 2.1

Description

Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after the "8BPS" image type in a Photo Shop image header.

Exploits (1)

exploitdb WORKING POC VERIFIED
by UNYUN · clocalwindows
https://www.exploit-db.com/exploits/19610

Scores

EPSS 0.0599
EPSS Percentile 90.7%

Details

Status published
Products (1)
irfanview/irfanview < 3.0.7
Published Nov 09, 1999
Tracked Since Feb 18, 2026