NCSOFT Game Launcher, NC Launcher2 2.4.1.691 and earlier versions have a vulnerability in the custom protocol handler that could allow remote attacker to execute arbitrary command. User interaction is required to exploit this vulnerability in that the target must visit a malicious web page. This can be leveraged for code execution in the context of the current user.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: krcert
Published: 2019-08-09T16:11:12.492401Z
Updated: 2024-09-16T19:05:39.796Z
Reserved: 2019-06-13T00:00:00
Link: CVE-2019-12805
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2019-08-09T17:15:11.330
Modified: 2023-03-29T16:21:46.473
Link: CVE-2019-12805
Redhat
No data.