CVE-2019-12805: Ncsoft Nc LAUNCHER2

High severity, CVSS 8.8. EPSS: 2.9% chance of exploitation in the next 30 days.

NCSOFT Game Launcher, NC Launcher2 2.4.1.691 and earlier versions have a vulnerability in the custom protocol handler that could allow remote attacker to execute arbitrary command. User interaction is required to exploit this vulnerability in that the target must visit a malicious web page. This can be leveraged for code execution in the context of the current user.

Affected products

  • Ncsoft Nc LAUNCHER2: up to and including 2.4.1.691

Published 2019-08-09. Last modified 2026-06-17.