CVE-2026-8148: Navercorp Mybox

High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.

NAVER MYBOX Explorer for Windows before 3.0.11.160 allows a local attacker to escalate privileges to NT AUTHORITY\SYSTEM via registry manipulation due to improper privilege checks.

Affected products

  • Navercorp Mybox: before 3.0.11.160 (fixed in 3.0.11.160)

Published 2026-05-08. Last modified 2026-06-17.