Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2017-2920

An memory corruption vulnerability exists in the .SVG parsing functionality of Computerinsel Photoline 20.02. A specially crafted .SVG file can cause a vulnerability resulting in memory corruption, which can potentially lead to arbitrary code execution. An attacker can send a specific .SVG file to trigger this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 69.8%
CVSS Severity
CVSS v3 Score 8.8
CVSS v2 Score 6.8
Products affected by CVE-2017-2920
  • Pl32 » Photoline » Version: 20.02
    cpe:2.3:a:pl32:photoline:20.02


Contact Us

Shodan ® - All rights reserved