Vulnerabilities (CVE)

Filtered by vendor Handysoft Subscribe
Filtered by product Groupware
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-26630 2 Handysoft, Microsoft 2 Groupware, Windows 2024-02-04 7.5 HIGH 9.8 CRITICAL
Improper input validation vulnerability in HANDY Groupware’s ActiveX moudle allows attackers to download or execute arbitrary files. This vulnerability can be exploited by using the file download or execution path as the parameter value of the vulnerable function.
CVE-2020-7804 2 Handysoft, Microsoft 4 Groupware, Windows 10, Windows 7 and 1 more 2024-02-04 6.5 MEDIUM 7.2 HIGH
ActiveX Control(HShell.dll) in Handy Groupware 1.7.3.1 for Windows 7, 8, and 10 allows an attacker to execute arbitrary command via the ShellExec method.