ZeroHour

CVE-2022-24075

CVSS 3.1
6.5 medium
EPSS
<1%p57
Published
()
Modified
Description

Whale browser before 3.12.129.18 allowed extensions to replace JavaScript files of the HWP viewer website which could access to local HWP files. When the HWP files were opened, the replaced script could read the files.

Vendors
navercorp
Products
whale
Weakness
CWE-552
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.