CVE-2016-20045: Hnb Project Hierarchical Notebook

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

HNB Organizer 1.9.18-10 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying an oversized argument to the -rc command-line parameter. Attackers can craft a malicious input string exceeding 108 bytes containing shellcode and a return address to overwrite the stack and achieve code execution.

Affected products

  • Hnb Project Hierarchical Notebook: up to and including 1.9.18-10

Published 2026-03-28. Last modified 2026-10-07.