Vulnerabilities > Handysoft > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-05-19 CVE-2021-26630 Improper Input Validation vulnerability in Handysoft Groupware
Improper input validation vulnerability in HANDY Groupware’s ActiveX moudle allows attackers to download or execute arbitrary files.
network
low complexity
handysoft CWE-20
critical
9.8
2021-09-09 CVE-2021-26608 Insufficient Verification of Data Authenticity vulnerability in Handysoft Hshell 1.7.4.5/2.0.3.5/4.0.1.6
An arbitrary file download and execution vulnerability was found in the HShell.dll of handysoft Co., Ltd groupware ActiveX module.
network
low complexity
handysoft CWE-345
critical
9.8