Vulnerabilities > Naver > Cloud Explorer > Critical

DATE CVE VULNERABILITY TITLE RISK
2020-03-23 CVE-2020-9752 Externally Controlled Reference to a Resource in Another Sphere vulnerability in Naver Cloud Explorer
Naver Cloud Explorer before 2.2.2.11 allows the attacker can move a local file in any path on the filesystem as a system privilege through its named pipe.
network
low complexity
naver CWE-610
critical
9.8
2020-03-03 CVE-2020-9751 Download of Code Without Integrity Check vulnerability in Naver Cloud Explorer
Naver Cloud Explorer before 2.2.2.11 allows the system to download an arbitrary file from the attacker's server and execute it during the upgrade.
network
low complexity
naver CWE-494
critical
9.1