Логотип exploitDog
bind:CVE-2020-35737
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-35737

Количество 2

Количество 2

nvd логотип

CVE-2020-35737

около 5 лет назад

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-rcj8-5g6r-c9cg

больше 3 лет назад

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-35737

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

CVSS3: 7.5
11%
Средний
около 5 лет назад
github логотип
GHSA-rcj8-5g6r-c9cg

In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.

11%
Средний
больше 3 лет назад

Уязвимостей на страницу