Hancom kayıtları
hancom üreticisine ait 25 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer9
- CWE-416 Use After Free4
- CWE-190 Integer Overflow or Wraparound3
- CWE-189 Numeric Errors2
- CWE-121 Stack-based Buffer Overflow2
- CWE-124 Buffer Underwrite ('Buffer Underflow')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
25 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2018-5195İstismar yok | Hancom NEO versions 9.6.1.5183 and earlier have a buffer Overflow vulnerability that leads remote attackers to execute arbitrary commands whhancom · thinkfree office neo · CWE-119 | Kritik9,8 | — | %2,6 | 17 Oca 2018 |
38İzleyin | CVE-2012-1206İstismar yok | Multiple integer overflows in Hancom Office 2010 SE 8.5.5 allow remote attackers to execute arbitrary code via large dimension values in a (hancom · hancom office 2010 se · CWE-189 | Kritik9,3 | — | %4,8 | 24 Şub 2012 |
36İzleyin | CVE-2020-7882Kavram kanıtı | anySign directory traversal vulnerabilityhancom · anysign4pc · CWE-24 | Kritik9,1 | — | %1,3 | 22 Kas 2021 |
35İzleyin | CVE-2023-51598İstismar yok | Hancom Office Word DOC File Parsing Use-After-Free Remote Code Execution Vulnerabilityhancom · office word · CWE-416 | Yüksek8,8 | — | %0,7 | 2 May 2024 |
35İzleyin | CVE-2023-40250İstismar yok | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Hancom HCell on Windows allows Overflow Buffers.Thishancom · hcell · CWE-120 | Yüksek8,8 | — | %0,6 | 11 Oca 2024 |
32İzleyin | CVE-2013-7420Kavram kanıtı | Buffer overflow in Hancom Office 2010 SE allows remote attackers to execute arbitrary via a long string in the Text attribute in a TEXTART Xhancom · hancom office 2010 se · CWE-119 | Yüksek7,5 | — | %7,0 | 12 Oca 2015 |
32İzleyin | CVE-2016-4293İstismar yok | Multiple heap-based buffer overflows in the (1) CBookBase::SetDefTableStyle and (2) CBookBase::SetDefPivotStyle functions in Hancom Office 2hancom · hancom office 2014 · CWE-119 | Yüksek7,8 | — | %3,6 | 20 Nis 2017 |
32İzleyin | CVE-2015-6585İstismar yok | hwpapp.dll in Hangul Word Processor allows remote attackers to execute arbitrary code via a crafted heap spray, and by leveraging a "type cohancom · hangul word processor · CWE-119 | Yüksek7,8 | — | %2,5 | 25 Tem 2017 |
32İzleyin | CVE-2016-4294İstismar yok | When opening a Hangul Hcell Document (.cell) and processing a property record within the Workbook stream, Hancom Office 2014 will attempt tohancom · hancom office 2014 · CWE-119 | Yüksek7,8 | — | %2,4 | 6 Oca 2017 |
32İzleyin | CVE-2016-4298İstismar yok | When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate spachancom · hancom office 2014 · CWE-190 | Yüksek7,8 | — | %2,3 | 6 Oca 2017 |
32İzleyin | CVE-2016-4295İstismar yok | When opening a Hangul Hcell Document (.cell) and processing a particular record within the Workbook stream, an index miscalculation leading hancom · hancom office 2014 · CWE-119 | Yüksek7,8 | — | %2,2 | 6 Oca 2017 |
32İzleyin | CVE-2016-4296İstismar yok | When opening a Hangul Hcell Document (.cell) and processing a record that uses the CSSValFormat object, Hancom Office 2014 will search for ahancom · hancom office 2014 · CWE-119 | Yüksek7,8 | — | %2,2 | 6 Oca 2017 |
32İzleyin | CVE-2016-4290İstismar yok | When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate spachancom · hancom office 2014 · CWE-190 | Yüksek7,8 | — | %2,1 | 6 Oca 2017 |
32İzleyin | CVE-2016-4291İstismar yok | When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the strhancom · hancom office 2014 · CWE-190 | Yüksek7,8 | — | %2,1 | 6 Oca 2017 |
32İzleyin | CVE-2016-4292İstismar yok | When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a static size to allhancom · hancom office 2014 · CWE-119 | Yüksek7,8 | — | %2,1 | 6 Oca 2017 |
31İzleyin | CVE-2015-2810İstismar yok | Integer overflow in the HwpApp::CHncSDS_Manager function in Hancom Office HanWord processor, as used in Hwp 2014 VP before 9.1.0.2342, HanWohancom · hanword viewer 2007 · CWE-189 | Yüksek7,5 | — | %2,3 | 15 May 2015 |
31İzleyin | CVE-2017-2819İstismar yok | An exploitable heap-based buffer overflow exists in the Hangul Word Processor component (version 9.6.1.4350) of Hancom Thinkfree Office NEO hancom · hangul word processor · CWE-119 | Yüksek7,8 | — | %1,7 | 24 May 2017 |
31İzleyin | CVE-2019-16337İstismar yok | The hncbd90 component in Hancom Office 9.6.1.9403 allows a use-after-free via an unknown object in a crafted .docx file.hancom · hancom office neo · CWE-416 | Yüksek7,8 | — | %1,1 | 19 Mar 2020 |
31İzleyin | CVE-2021-21958İstismar yok | A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353.hancom · hancom office 2020 · CWE-122 | Yüksek7,8 | — | %1,1 | 16 Şub 2022 |
31İzleyin | CVE-2019-16338İstismar yok | The tfo_common component in HwordApp.dll in Hancom Office 9.6.1.7634 allows a use-after-free via a crafted .docx file.hancom · hancom office neo · CWE-416 | Yüksek7,8 | — | %1,0 | 19 Mar 2020 |
31İzleyin | CVE-2023-32541İstismar yok | A use-after-free vulnerability exists in the footerr functionality of Hancom Office 2020 HWord 11.0.0.7520.hancom · hancom office 2020 · CWE-416 | Yüksek7,8 | — | %0,7 | 27 Eyl 2023 |
31İzleyin | CVE-2022-33896İstismar yok | A buffer underflow vulnerability exists in the way Hword of Hancom Office 2020 version 11.0.0.5357 parses XML-based office files.hancom · hancom office 2020 · CWE-124 | Yüksek7,8 | — | %0,5 | 7 Eki 2022 |
31İzleyin | CVE-2023-50235İstismar yok | Hancom Office Show PPT File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerabilityhancom · office show · CWE-121 | Yüksek7,8 | — | %0,4 | 2 May 2024 |
31İzleyin | CVE-2023-50234İstismar yok | Hancom Office Cell XLS File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerabilityhancom · office cell · CWE-121 | Yüksek7,8 | — | %0,3 | 2 May 2024 |
22İzleyin | CVE-2018-5201İstismar yok | Hancom Office 2018 10.0.0.8214 and earlier, Hancom Office NEO 9.6.1.10472 and earlier, Hancom Office 2014 9.1.1.4540 and earlier, Hancom Offhancom · hancom office 2010 · CWE-787 | Orta5,5 | — | %0,7 | 21 Ara 2018 |
- CVE-2018-519540Planlayın
Hancom NEO versions 9.6.1.5183 and earlier have a buffer Overflow vulnerability that leads remote attackers to execute arbitrary commands wh
KritikCVSS 9,8İstismar yokEPSS %3hancom · thinkfree office neo17 Oca 2018
- CVE-2012-120638İzleyin
Multiple integer overflows in Hancom Office 2010 SE 8.5.5 allow remote attackers to execute arbitrary code via large dimension values in a (
KritikCVSS 9,3İstismar yokEPSS %5hancom · hancom office 2010 se24 Şub 2012
- CVE-2020-788236İzleyin
anySign directory traversal vulnerability
KritikCVSS 9,1Kavram kanıtıEPSS %1hancom · anysign4pc22 Kas 2021
- CVE-2023-5159835İzleyin
Hancom Office Word DOC File Parsing Use-After-Free Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1hancom · office word2 May 2024
- CVE-2023-4025035İzleyin
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Hancom HCell on Windows allows Overflow Buffers.This
YüksekCVSS 8,8İstismar yokEPSS %1hancom · hcell11 Oca 2024
- CVE-2013-742032İzleyin
Buffer overflow in Hancom Office 2010 SE allows remote attackers to execute arbitrary via a long string in the Text attribute in a TEXTART X
YüksekCVSS 7,5Kavram kanıtıEPSS %7hancom · hancom office 2010 se12 Oca 2015
- CVE-2016-429332İzleyin
Multiple heap-based buffer overflows in the (1) CBookBase::SetDefTableStyle and (2) CBookBase::SetDefPivotStyle functions in Hancom Office 2
YüksekCVSS 7,8İstismar yokEPSS %4hancom · hancom office 201420 Nis 2017
- CVE-2015-658532İzleyin
hwpapp.dll in Hangul Word Processor allows remote attackers to execute arbitrary code via a crafted heap spray, and by leveraging a "type co
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hangul word processor25 Tem 2017
- CVE-2016-429432İzleyin
When opening a Hangul Hcell Document (.cell) and processing a property record within the Workbook stream, Hancom Office 2014 will attempt to
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2016-429832İzleyin
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate spac
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2016-429532İzleyin
When opening a Hangul Hcell Document (.cell) and processing a particular record within the Workbook stream, an index miscalculation leading
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2016-429632İzleyin
When opening a Hangul Hcell Document (.cell) and processing a record that uses the CSSValFormat object, Hancom Office 2014 will search for a
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2016-429032İzleyin
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will attempt to allocate spac
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2016-429132İzleyin
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a field from the str
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2016-429232İzleyin
When opening a Hangul HShow Document (.hpt) and processing a structure within the document, Hancom Office 2014 will use a static size to all
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hancom office 20146 Oca 2017
- CVE-2015-281031İzleyin
Integer overflow in the HwpApp::CHncSDS_Manager function in Hancom Office HanWord processor, as used in Hwp 2014 VP before 9.1.0.2342, HanWo
YüksekCVSS 7,5İstismar yokEPSS %2hancom · hanword viewer 200715 May 2015
- CVE-2017-281931İzleyin
An exploitable heap-based buffer overflow exists in the Hangul Word Processor component (version 9.6.1.4350) of Hancom Thinkfree Office NEO
YüksekCVSS 7,8İstismar yokEPSS %2hancom · hangul word processor24 May 2017
- CVE-2019-1633731İzleyin
The hncbd90 component in Hancom Office 9.6.1.9403 allows a use-after-free via an unknown object in a crafted .docx file.
YüksekCVSS 7,8İstismar yokEPSS %1hancom · hancom office neo19 Mar 2020
- CVE-2021-2195831İzleyin
A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353.
YüksekCVSS 7,8İstismar yokEPSS %1hancom · hancom office 202016 Şub 2022
- CVE-2019-1633831İzleyin
The tfo_common component in HwordApp.dll in Hancom Office 9.6.1.7634 allows a use-after-free via a crafted .docx file.
YüksekCVSS 7,8İstismar yokEPSS %1hancom · hancom office neo19 Mar 2020
- CVE-2023-3254131İzleyin
A use-after-free vulnerability exists in the footerr functionality of Hancom Office 2020 HWord 11.0.0.7520.
YüksekCVSS 7,8İstismar yokEPSS %1hancom · hancom office 202027 Eyl 2023
- CVE-2022-3389631İzleyin
A buffer underflow vulnerability exists in the way Hword of Hancom Office 2020 version 11.0.0.5357 parses XML-based office files.
YüksekCVSS 7,8İstismar yokEPSS %1hancom · hancom office 20207 Eki 2022
- CVE-2023-5023531İzleyin
Hancom Office Show PPT File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0hancom · office show2 May 2024
- CVE-2023-5023431İzleyin
Hancom Office Cell XLS File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 7,8İstismar yokEPSS %0hancom · office cell2 May 2024
- CVE-2018-520122İzleyin
Hancom Office 2018 10.0.0.8214 and earlier, Hancom Office NEO 9.6.1.10472 and earlier, Hancom Office 2014 9.1.1.4540 and earlier, Hancom Off
OrtaCVSS 5,5İstismar yokEPSS %1hancom · hancom office 201021 Ara 2018