← Back to browse · API

CVE-2020-13572

Severity
CRITICAL
CVSS
9.8
EPSS
0.01917
Risk score
39.87
CISA KEV
No
PoC
No
Published
2021-02-10
Modified
2024-08-04
First seen
2026-08-07
Aliases
EUVD-2020-5819, GHSA-PVWF-P3GJ-CCCJ
Products
n/a:Accusoft Accusoft ImageGear Accusoft ImageGear 19.8
Sources
euvd EUVD-2020-5819

Description

A heap overflow vulnerability exists in the way the GIF parser decodes LZW compressed streams in Accusoft ImageGear 19.8. A specially crafted malformed file can trigger a heap overflow, which can result in arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.

References