WinImage is a disk imaging and management utility with a narrow product scope. Its reported vulnerabilities concentrate on input-handling issues such as improper input validation and path-traversal weaknesses, reflecting the risks inherent to file and disk manipulation functionality. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Winimage over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4962HIGH Directory traversal vulnerability in WinImage 8.10 and earlier allows user-assisted remote attackers to create or overwrite arbitrary files via a .. (dot dot) in a filename within | Sep 18, 2007 | 9.3 | 35 | NO | YES |
CVE-2007-2758HIGH Multiple buffer overflows in WinImage 8.0.8000 allow user-assisted remote attackers to execute arbitrary code via a FAT image that contains long directory names in a deeply nested | May 18, 2007 | 9.3 | 27 | NO | NO |
CVE-2007-4963HIGH Visual truncation vulnerability in WinImage 8.10 and earlier allows remote attackers to spoof a destination filename via a long sequence of space characters in a filename within a | Sep 18, 2007 | 9.3 | 23 | NO | NO |
CVE-2007-4964MEDIUM WinImage 8.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via an invalid BPB_BytsPerSec field in the header of a .IMG file. | Sep 18, 2007 | 5.0 | 23 | NO | YES |
CVE-2010-5253MEDIUM Untrusted search path vulnerability in WinImage 8.50 allows local users to gain privileges via a Trojan horse wnaspi32.dll file in the current working directory, as demonstrated by | Sep 7, 2012 | 6.9 | 20 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Winimage.
Media articles that mention a CVE ID that affects a product developed by Winimage — matched by CVE ID, not by vendor name.