CVE Published: 29/04/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: krcert |
Vendor: HandySoft |
Product: HandySoft Groupware(HShell.dll) for for Windows 7, 8, 10 Status : PUBLISHED
CVE-2020-7804 Description
ActiveX Control(HShell.dll) in Handy Groupware 1.7.3.1 for Windows 7, 8, and 10 allows an attacker to execute arbitrary command via the ShellExec method.
Metrics
CVSS Version: 3.1 |
Base Score: 6.4 MEDIUM Vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:L/A:H