Naver · Naver Vaccine · CVE-2019-13157
**Name of the Vulnerable Software and Affected Versions**
Naver Vaccine version 2.1.4
**Description**
The issue allows remote attackers to overwrite arbitrary files via directory traversal sequences in a filename within nsz archive. This is due to a problem in the nsGreen.dll component.
**Recommendations**
For Naver Vaccine version 2.1.4, consider updating to a newer version that addresses this issue, if available. As a temporary workaround, restrict access to the nsGreen.dll component to minimize the risk of exploitation.