An arbitrary file download and execution vulnerability was found in the HShell.dll of handysoft Co., Ltd groupware ActiveX module. This issue is due to missing support for integrity check of download URL or downloaded file hash.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: krcert

Published: 2021-09-09T12:54:23

Updated: 2024-08-03T20:26:25.562Z

Reserved: 2021-02-03T00:00:00

Link: CVE-2021-26608

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-09-09T13:15:08.543

Modified: 2022-08-02T15:52:41.767

Link: CVE-2021-26608

cve-icon Redhat

No data.