CVE-2016-20045: Hnb Project Hierarchical Notebook
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
HNB Organizer 1.9.18-10 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -rc command-line parameter. Attackers can craft a malicious input string exceeding 108 bytes containing shellcode and a return address to overwrite the stack and achieve code execution.
Affected products
- Hnb Project Hierarchical Notebook: up to and including 1.9.18-10
Published 2026-03-28. Last modified 2026-10-07.