Vulnerabilities (CVE)

Filtered by vendor Naver Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-33592 1 Naver 1 Toolbar 2021-07-29 7.5 HIGH 9.8 CRITICAL
NAVER Toolbar before 4.0.30.323 allows remote attackers to execute arbitrary code via a crafted upgrade.xml file. Special characters in filename parameter can be the cause of bypassing code signing check function.
CVE-2020-9753 1 Naver 1 Whale Browser Installer 2020-05-21 6.4 MEDIUM 9.1 CRITICAL
Whale Browser Installer before 1.2.0.5 versions don't support signature verification for Flash installer.
CVE-2020-9752 1 Naver 1 Cloud Explorer 2020-03-25 7.5 HIGH 9.8 CRITICAL
Naver Cloud Explorer before 2.2.2.11 allows the attacker can move a local file in any path on the filesystem as a system privilege through its named pipe.
CVE-2020-9751 1 Naver 1 Cloud Explorer 2020-03-04 6.4 MEDIUM 9.1 CRITICAL
Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's server and execute it during the upgrade.