Out-Of-Bounds Read Vulnerability in IrfanView CADImage Plugin
CVE-2025-7264
7.8HIGH
What is CVE-2025-7264?
The IrfanView CADImage Plugin contains a vulnerability that permits remote code execution due to improper validation in the parsing of CGM files. Attackers can exploit this flaw by enticing users to open manipulated files or visit malicious web pages. This results in the potential execution of code in the context of the current process, making it imperative for users to remain cautious and implement necessary security measures.
Affected Version(s)
IrfanView 4.70.0.0