The vulnerabilty was discovered in ActiveX module related to NeoRS remote support program. This issue allows an remote attacker to download and execute remote file. It is because of improper parameter validation of StartNeoRS function in ActiveX.
References
Link | Resource |
---|---|
https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=36367 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: krcert
Published: 2021-11-30T18:47:59
Updated: 2021-11-30T18:47:59
Reserved: 2020-01-22T00:00:00
Link: CVE-2020-7880
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-11-30T19:15:08.360
Modified: 2021-12-01T20:22:38.140
Link: CVE-2020-7880
JSON object: View
Redhat Information
No data.
CWE