CVE-2013-3928

Stack-based buffer overflow in the ReadFile function in flt_BMP.dll in Chasys Draw IES before 4.11.02 allows remote attackers to execute arbitrary code via crafted biPlanes and biBitCount fields in a BMP file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
flexeraCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 98%
VendorProductVersion
jpchachachasys_draw_ies
𝑥
≤ 4.10.01
jpchachachasys_draw_ies
4.00.01
jpchachachasys_draw_ies
4.01.01
jpchachachasys_draw_ies
4.02.01
jpchachachasys_draw_ies
4.03.02
jpchachachasys_draw_ies
4.04.01
jpchachachasys_draw_ies
4.06.02
𝑥
= Vulnerable software versions