VYPR

Office 2020

by Hancom

CVEs (2)

  • CVE-2023-32541HigSep 27, 2023
    risk 0.57cvss 8.8epss 0.01

    A use-after-free vulnerability exists in the footerr functionality of Hancom Office 2020 HWord 11.0.0.7520. A specially crafted .doc file can lead to a use-after-free. An attacker can trick a user into opening a malformed file to trigger this vulnerability.

  • CVE-2022-33896HigOct 7, 2022
    risk 0.51cvss 7.8epss 0.01

    A buffer underflow vulnerability exists in the way Hword of Hancom Office 2020 version 11.0.0.5357 parses XML-based office files. A specially-crafted malformed file can cause memory corruption by using memory before buffer start, which can lead to code execution. A victim would…