VYPR

Nako3edit, Editor Component Of Nadesiko3 (pc Version)

by Kujirahand

CVEs (2)

  • CVE-2022-42496CriDec 5, 2022
    risk 0.64cvss 9.8epss 0.02

    OS command injection vulnerability in Nako3edit, editor component of nadesiko3 (PC Version) v3.3.74 and earlier allows a remote attacker to obtain appkey of the product and execute an arbitrary OS command on the product.

  • CVE-2022-41777HigDec 5, 2022
    risk 0.49cvss 7.5epss 0.01

    Improper check or handling of exceptional conditions vulnerability in Nako3edit, editor component of nadesiko3 (PC Version) v3.3.74 and earlier allows a remote attacker to inject an invalid value to decodeURIComponent of nako3edit, which may lead the server to crash.