Show plain JSON{"id": "CVE-2018-11707", "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 6.8, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "MEDIUM", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 6.4, "baseSeverity": "MEDIUM", "obtainAllPrivilege": false, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}], "cvssMetricV30": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"scope": "UNCHANGED", "version": "3.0", "baseScore": 7.8, "attackVector": "LOCAL", "baseSeverity": "HIGH", "vectorString": "CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "integrityImpact": "HIGH", "userInteraction": "REQUIRED", "attackComplexity": "LOW", "availabilityImpact": "HIGH", "privilegesRequired": "NONE", "confidentialityImpact": "HIGH"}, "impactScore": 5.9, "exploitabilityScore": 1.8}]}, "published": "2018-06-20T01:29:02.680", "references": [{"url": "https://github.com/MostafaSoliman/Security-Advisories/tree/master/CVE-2018-11707", "tags": ["Third Party Advisory"], "source": "cve@mitre.org"}, {"url": "https://github.com/MostafaSoliman/Security-Advisories/tree/master/CVE-2018-11707", "tags": ["Third Party Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Modified", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "CWE-119"}]}], "descriptions": [{"lang": "en", "value": "FastStone Image Viewer 6.2 has a User Mode Read and Execute AV at 0x0057898e, triggered when the user opens a malformed JPEG file that is mishandled by FSViewer.exe. Attackers could exploit this issue for DoS (Access Violation) or possibly unspecified other impact."}, {"lang": "es", "value": "FastStone Image Viewer 6.2 tiene un AV de lectura y ejecuci\u00f3n de modo de usuario en 0x0057898e, que se desencadena cuando el usuario abre un archivo JPEG mal formado que es gestionado err\u00f3neamente por FSViewer.exe. Los atacantes podr\u00edan explotar este problema para lograr una denegaci\u00f3n de servicio (violaci\u00f3n de acceso) o posiblemente otro tipo de impacto sin especificar."}], "lastModified": "2024-11-21T03:43:52.047", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:faststone:image_viewer:6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F14D7F39-6197-414E-A08E-BDD7DA84A5D4"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}