VYPR

Thinkfree Office Neo

by Hancom

CVEs (2)

  • CVE-2018-5195CriJan 17, 2018
    risk 0.64cvss 9.8epss 0.03

    Hancom NEO versions 9.6.1.5183 and earlier have a buffer Overflow vulnerability that leads remote attackers to execute arbitrary commands when performing the hyperlink Attributes in document.

  • CVE-2017-2819HigMay 24, 2017
    risk 0.57cvss 8.8epss 0.02

    An exploitable heap-based buffer overflow exists in the Hangul Word Processor component (version 9.6.1.4350) of Hancom Thinkfree Office NEO 9.6.1.4902. A specially crafted document stream can cause an integer underflow resulting in a buffer overflow which can lead to code…