High severity8.8NVD Advisory· Published Nov 17, 2020· Updated Jun 17, 2026
CVE-2020-7841
CVE-2020-7841
Description
Improper input validation vulnerability exists in TOBESOFT XPLATFORM which could cause arbitrary .hta file execution when the command string is begun with http://, https://, mailto://
Affected products
3- TOBESOFT/XPLATFORM XPlatformLib922.dllv5Range: 9.2.2.250
Patches
Vulnerability mechanics
References
1- www.boho.or.kr/krcert/secNoticeView.donvdThird Party Advisory
News mentions
0No linked articles in our index yet.