Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
NC Launcher 2 Arbitrary Command Injection Vulnerability
Vulnerability Description
NCSOFT Game Launcher, NC Launcher2 2.4.1.691 and earlier versions have a vulnerability in the custom protocol handler that could allow remote attacker to execute arbitrary command. User interaction is required to exploit this vulnerability in that the target must visit a malicious web page. This can be leveraged for code execution in the context of the current user.
CVSS Information
N/A
Vulnerability Type
在命令中使用的特殊元素转义处理不恰当(命令注入)
Vulnerability Title
NC Launcher2 命令注入漏洞
Vulnerability Description
NC Launcher2是一款游戏启动器。 NNC Launcher2 2.4.1.691及之前版本中的custom protocol handler存在命令注入漏洞。攻击者可借助恶意的页面利用该漏洞执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A