# CVE-2020-7808

## Summary

- **CVE ID:** CVE-2020-7808
- **Severity:** HIGH
- **CVSS Score:** 8.7 (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:N/A:H)
- **CWE:** CWE-353, CWE-88
- **Published:** May 21, 2020
- **Last Modified:** Mar 14, 2026

## Description

In RAONWIZ K Upload v2018.0.2.51 and prior, automatic update processing without integrity check on update module(web.js) allows an attacker to modify arguments which causes downloading a random DLL and injection on it.

## Affected Products

- RAONWIZ Inc — K Upload (unspecified)

## References

- [CNA](https://www.boho.or.kr/krcert/secNoticeView.do?bulletin_writing_sequence=35424)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.24%
- **EPSS Percentile:** 46.3

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-19._