← Back to CVE List

CVE-2020-11561

Published: 2020-04-07T16:15Z
Last Modified: 2024-11-21T04:58Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In NCH Express Invoice 7.25, an authenticated low-privilege user can enter a crafted URL to access higher-privileged functionalities such as the "Add New Item" screen. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt