Security Advisory

CVE-2020-7810

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-08-07 15:21:05
Last updated 2024-09-16 23:15:41
Assigner krcert
State PUBLISHED

Description

hslogin2.dll ActiveX Control in Groupware contains a vulnerability that could allow remote files to be downloaded and executed by setting the arguments to the activex method. This is due to a lack of integrity verification of the policy files referenced in the update process, and a remote attacker could induce a user to crafted web page, causing damage such as malicious code infection.