Show filters
36 Total Results
Displaying 21-30 of 36
Sort by:
Attacker Value
Unknown

CVE-2021-33591

Disclosure Date: May 28, 2021 (last updated February 22, 2025)
An exposed remote debugging port in Naver Comic Viewer prior to 1.0.15.0 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
Attacker Value
Unknown

CVE-2020-9753

Disclosure Date: May 20, 2020 (last updated February 21, 2025)
Whale Browser Installer before 1.2.0.5 versions don't support signature verification for Flash installer.
Attacker Value
Unknown

CVE-2020-9752

Disclosure Date: March 23, 2020 (last updated February 21, 2025)
Naver Cloud Explorer before 2.2.2.11 allows the attacker can move a local file in any path on the filesystem as a system privilege through its named pipe.
Attacker Value
Unknown

CVE-2020-9751

Disclosure Date: March 03, 2020 (last updated February 21, 2025)
Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's server and execute it during the upgrade.
Attacker Value
Unknown

CVE-2019-13157

Disclosure Date: October 10, 2019 (last updated November 27, 2024)
nsGreen.dll in Naver Vaccine 2.1.4 allows remote attackers to overwrite arbitary files via directory traversal sequences in a filename within nsz archive.
Attacker Value
Unknown

CVE-2019-13156

Disclosure Date: September 03, 2019 (last updated November 27, 2024)
NDrive(1.2.2).sys in Naver Cloud Explorer has a stack-based buffer overflow, which allows attackers to cause a denial of service when reading data from IOCTL handle.
Attacker Value
Unknown

CVE-2018-12449

Disclosure Date: October 11, 2018 (last updated November 27, 2024)
The Whale browser installer 0.4.3.0 and earlier versions allows DLL hijacking.
0
Attacker Value
Unknown

CVE-2018-12448

Disclosure Date: August 02, 2018 (last updated November 27, 2024)
Whale Browser before 1.3.48.4 displays no URL information but only a title of a web page on the browser's address bar when visiting a non-http page, which allows an attacker to display a malicious web page with a fake domain name.
0
Attacker Value
Unknown

CVE-2018-7635

Disclosure Date: July 03, 2018 (last updated November 27, 2024)
Whale Browser before 1.0.41.8 displays no URL information but only a title of a web page on the browser's address bar when visiting a blank page, which allows an attacker to display a malicious web page with a fake domain name.
0
Attacker Value
Unknown

CVE-2018-9859

Disclosure Date: June 16, 2018 (last updated November 26, 2024)
The path of Whale update service was unquoted in NAVER Whale before 1.0.40.7. This vulnerability can be used for persistent privilege escalation if it's available to create an executable file with System privilege by other vulnerable applications.
0