CDNetworks operates a modest portfolio of client-side download and media-playback applications, with its vulnerability exposure centered on path-traversal and directory-listing issues that are typical of file-handling and access-control boundaries in local software. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Cdnetworks over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-1886HIGH The NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficient Download uses weak cryptography for a KeyCode that blocks unauthorized use of the control, whic | Apr 18, 2008 | 7.5 | 31 | NO | YES |
CVE-2008-1885MEDIUM Directory traversal vulnerability in the NeffyLauncher 1.0.5 ActiveX control (NeffyLauncher.dll) in CDNetworks Nefficient Download allows remote attackers to download arbitrary cod | Apr 18, 2008 | 6.8 | 29 | NO | YES |
CVE-2020-7858HIGH There is a directory traversing vulnerability in the download page url of AquaNPlayer 2.0.0.92. The IP of the download page url is localhost and an attacker can traverse directorie | Apr 22, 2021 | 8.6 | 26 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Cdnetworks.
Media articles that mention a CVE ID that affects a product developed by Cdnetworks — matched by CVE ID, not by vendor name.