Memory Corruption Vulnerability in IrfanView CADImage Plugin
CVE-2025-7315
7.8HIGH
What is CVE-2025-7315?
The IrfanView CADImage Plugin contains a memory corruption vulnerability resulting from inadequate validation of user-supplied data during DWG file parsing. This flaw enables remote attackers to exploit the vulnerability by enticing users to visit a malicious page or open a compromised DWG file, leading to arbitrary code execution in the context of the affected application. The security risk is significant, as it allows potential attackers to manipulate the application’s behavior and gain unauthorized access.
Affected Version(s)
IrfanView 4.70.0.0