Hancom Vulnerabilities and Affected Products
Vulnerabilities associated with Hancom Office 2020.
Products
Clear product- Hancom Office7 vulnerabilities
- Office3 vulnerabilities
- Hancom Office 20202 vulnerabilities
- hancom_office_20202 vulnerabilities
- anysign4pc1 vulnerability
- Hancom office Hword NEO1 vulnerability
- Hangul Word Processor in Thinkfree Office NEO Trial Word1 vulnerability
- hangul_word_processor1 vulnerability
- hanom_office_show1 vulnerability
- HCell1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2023-32541HIGH | A use-after-free vulnerability exists in the footerr functionality of Hancom Office 2020 HWord 11.0.0.7520. A specially crafted .doc file can lead to a use-after-free. An attacker can trick a user into opening a malformed file to trigger this vulnerability. CWE-416Sep 26, 2023 | CVSS8.8v3.1 | EPSS0.655% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2022-33896HIGH | hancom hancom_office_2020 Buffer Underwrite ('Buffer Underflow')A buffer underflow vulnerability exists in the way Hword of Hancom Office 2020 version 11.0.0.5357 parses XML-based office files. A specially-crafted malformed file can cause memory corruption by using memory before buffer start, which can lead to code execution. A victim would need to access a malicious file to trigger this vulnerability. CWE-124Oct 7, 2022 | CVSS7.8v3.1 | EPSS0.516% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |