Memory Corruption Vulnerability in IrfanView CADImage Plugin
CVE-2025-7303
7.8HIGH
What is CVE-2025-7303?
The IrfanView CADImage Plugin is susceptible to a memory corruption issue due to improper validation of user-supplied data during the parsing of DWG files. This flaw can be exploited by remote attackers, requiring user interaction to trigger the vulnerability through a maliciously crafted file or web page. Successful exploitation could allow arbitrary code execution within the affected installations, potentially compromising the security of the system.
Affected Version(s)
IrfanView 4.70.0.0