VYPR
High severity8.0NVD Advisory· Published Feb 24, 2021· Updated Jun 17, 2026

CVE-2020-7846

CVE-2020-7846

Description

Helpcom before v10.0 contains a file download and execution vulnerability caused by storing hardcoded cryptographic key. It finally leads to a file download and execution via access to crafted web page.

Affected products

3
  • Cnesty/Helpcom2 versions
    cpe:2.3:a:cnesty:helpcom:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cnesty:helpcom:*:*:*:*:*:*:*:*range: <10.0
    • (no CPE)range: < 10.0
  • Helpcom/Helpcomllm-fuzzy
    Range: <10.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.