CVE-2020-7821
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
Nexacro14/17 ExtCommonApiV13 Library under 2019.9.6 version contain a vulnerability that could allow remote attacker to execute arbitrary code by modifying the value of registry path. This can be leveraged for code execution by rebooting the victim’s PC
Affected (2)
Products: Nexaweb: Nexacro 14, Nexacro 17
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 2019.9.6 | |
| Before 2019.9.6 |
| Running on/with | Platform Versions |
|---|---|
Microsoft Windows | All versions |
References (4)
Source: vuln@krcert.or.kr
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.