Записи handysoft
4 опубликованных записей вендора handysoft.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-353 Missing Support for Integrity Check2
- CWE-20 Improper Input Validation1
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2021-26630Эксплойта нет | HANDY Groupware file download and execute vulnerabilityhandysoft · groupware · CWE-20 | Критическая9,8 | — | 0,8 % | 19 мая 2022 г. |
39Наблюдать | CVE-2021-26608Эксплойта нет | handysoft groupware arbitrary file download and execution vulnerabilityhandysoft · hshell · CWE-353 | Критическая9,8 | — | 0,6 % | 9 сент. 2021 г. |
35Наблюдать | CVE-2020-7810Эксплойта нет | HandySoft ActiveX File Download and Execution Vulnerabilityhandysoft · hslogin2.dll · CWE-353 | Высокая8,8 | — | 0,4 % | 7 авг. 2020 г. |
28Наблюдать | CVE-2020-7804Эксплойта нет | ActiveX Control(HShell.dll) in Handy Groupware 1.7.3.1 for Windows 7, 8, and 10 allows an attacker to execute arbitrary command via the Shelhandysoft · groupware · CWE-78 | Высокая7,2 | — | 1,0 % | 29 апр. 2020 г. |
- CVE-2021-2663039Наблюдать
HANDY Groupware file download and execute vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %handysoft · groupware19 мая 2022 г.
- CVE-2021-2660839Наблюдать
handysoft groupware arbitrary file download and execution vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %handysoft · hshell9 сент. 2021 г.
- CVE-2020-781035Наблюдать
HandySoft ActiveX File Download and Execution Vulnerability
ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %handysoft · hslogin2.dll7 авг. 2020 г.
- CVE-2020-780428Наблюдать
ActiveX Control(HShell.dll) in Handy Groupware 1.7.3.1 for Windows 7, 8, and 10 allows an attacker to execute arbitrary command via the Shel
ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %handysoft · groupware29 апр. 2020 г.