CVE-2026-8148

NAVER MYBOX Explorer for Windows before 3.0.11.160 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM via registry manipulation due to improper privilege checks.
References
Link Resource
https://cve.naver.com/detail/cve-2026-8148.html Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:navercorp:mybox:*:*:*:*:*:windows:*:*

History

11 May 2026, 12:59

Type Values Removed Values Added
First Time Navercorp mybox
Navercorp
References () https://cve.naver.com/detail/cve-2026-8148.html - () https://cve.naver.com/detail/cve-2026-8148.html - Vendor Advisory
CPE cpe:2.3:a:navercorp:mybox:*:*:*:*:*:windows:*:*

08 May 2026, 19:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8

08 May 2026, 05:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-08 05:16

Updated : 2026-05-11 12:59


NVD link : CVE-2026-8148

Mitre link : CVE-2026-8148

CVE.ORG link : CVE-2026-8148


JSON object : View

Products Affected

navercorp

  • mybox
CWE
CWE-266

Incorrect Privilege Assignment