CVE-2022-23763
DOUZONE BIZON NeoRS file download and execute vulnerability
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 7.8EPSS 0.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
28 Jun 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Origin validation error vulnerability in NeoRS’s ActiveX moudle allows attackers to download and execute arbitrary files. Remote attackers can use this vulerability to encourage users to access crafted web pages, causing damage such as malicious code infections.
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
DOUZONE BIZON Co.,Ltd · NeoRSWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →