A vulnerability in agent program of HelpU remote control solution could allow an authenticated remote attacker to execute arbitrary commands This vulnerability is due to insufficient input santization when communicating customer process.
References
Link | Resource |
---|---|
https://helpu.co.kr/customer/download.html | Vendor Advisory |
https://krcert.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=36094 | Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
01 Jul 2021, 18:13
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-20 | |
CPE | cpe:2.3:a:helpu:helpuserver:1.0.0.2:*:*:*:*:windows:*:* cpe:2.3:a:helpu:helpuftserver:3.0.0.0:*:*:*:*:windows:*:* cpe:2.3:a:helpu:helpuviewer:2018.5.21.0:*:*:*:*:windows:*:* cpe:2.3:a:helpu:helpuftclient:3.0.0.0:*:*:*:*:windows:*:* |
|
References | (MISC) https://krcert.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=36094 - Third Party Advisory | |
References | (MISC) https://helpu.co.kr/customer/download.html - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 6.5
v3 : 8.8 |
24 Jun 2021, 11:27
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-06-24 11:15
Updated : 2024-02-04 21:47
NVD link : CVE-2020-7862
Mitre link : CVE-2020-7862
CVE.ORG link : CVE-2020-7862
JSON object : View
Products Affected
helpu
- helpuviewer
- helpuserver
- helpuftserver
- helpuftclient