Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Hancom Subscribe
Filtered by product Hancom Office 2020
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-33896 1 Hancom 1 Hancom Office 2020 2022-10-11 N/A 7.8 HIGH
A buffer underflow vulnerability exists in the way Hword of Hancom Office 2020 version 11.0.0.5357 parses XML-based office files. A specially-crafted malformed file can cause memory corruption by using memory before buffer start, which can lead to code execution. A victim would need to access a malicious file to trigger this vulnerability.
CVE-2021-21958 1 Hancom 1 Hancom Office 2020 2022-05-12 6.8 MEDIUM 7.8 HIGH
A heap-based buffer overflow vulnerability exists in the Hword HwordApp.dll functionality of Hancom Office 2020 11.0.0.2353. A specially-crafted malformed file can lead to memory corruption and potential arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.