SB2020040754 - Multiple vulnerabilities in Express Invoice
Published: April 7, 2020 Updated: October 25, 2024
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 2 secuirty vulnerabilities.
1) Insufficiently protected credentials (CVE-ID: CVE-2020-11560)
The vulnerability allows a local authenticated user to execute arbitrary code.
NCH Express Invoice 7.25 allows local users to discover the cleartext password by reading the configuration file.
2) Improper Privilege Management (CVE-ID: CVE-2020-11561)
The vulnerability allows a remote authenticated user to execute arbitrary code.
In NCH Express Invoice 7.25, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as the "Add New Item" screen.
Remediation
Install update from vendor's website.