CVE-2020-7862
Summary
| CVE | CVE-2020-7862 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-24 11:15:00 UTC |
| Updated | 2022-09-20 19:04:00 UTC |
| Description | A vulnerability in agent program of HelpU remote control solution could allow an authenticated remote attacker to execute arbitrary commands This vulnerability is due to insufficient input santization when communicating customer process. |
Risk And Classification
Problem Types: CWE-20
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Helpu | Helpuftclient | 3.0.0.0 | All | All | All |
| Application | Helpu | Helpuftserver | 3.0.0.0 | All | All | All |
| Application | Helpu | Helpuserver | 1.0.0.2 | All | All | All |
| Application | Helpu | Helpuviewer | 2018.5.21.0 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| KrCERT/CC - KISA 인터넷 보호나라&KrCERT | MISC | krcert.or.kr | |
| 원격지원 헬프유 - 다운로드 | MISC | helpu.co.kr | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
Discovery Credit
LEGACY: Thanks to Jeongun Back for reporting this vulnerability.
There are currently no legacy QID mappings associated with this CVE.