VYPR

K Upload

by Raonwiz

CVEs (2)

  • CVE-2020-7808HigMay 21, 2020
    risk 0.57cvss 8.7epss 0.01

    In RAONWIZ K Upload v2018.0.2.51 and prior, automatic update processing without integrity check on update module(web.js) allows an attacker to modify arguments which causes downloading a random DLL and injection on it.

  • CVE-2020-7817MedAug 6, 2020
    risk 0.36cvss 5.5epss 0.00

    MyBrowserPlus downloads the files needed to run the program through the setup file (Setup.inf). At this time, there is a vulnerability in downloading arbitrary files due to insufficient integrity verification of the files.