CVE-2020-7841

Publication date

2020-11-17 13:04:12

Family

krcert

State

PUBLISHED

Description

Improper input validation vulnerability exists in TOBESOFT XPLATFORM which could cause arbitrary .hta file execution when the command string is begun with http://, https://, mailto://