← back
CVE-2020-7880highCWE-20

douzone NeoRS remote support program ActiveX vulnerability

21Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 7.5epss 1.7%
exploitation probability
1.7%top 24% of all CVEs
observed exploitation
nono source reports it
The vulnerabilty was discovered in ActiveX module related to NeoRS remote support program. This issue allows an remote attacker to download and execute remote file. It is because of improper parameter validation of StartNeoRS function in ActiveX.
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Affected products
douzone · NeoRS