Description
Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s attributes with numeric format allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format, which makes the affected attribute non-editable.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-29107 | Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s attributes with numeric format allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format, which makes the affected attribute non-editable. |
References
History
No history.
Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2024-08-04T03:30:37.576Z
Reserved: 2021-10-08T00:00:00.000Z
Link: CVE-2021-42122
No data.
Status : Modified
Published: 2021-11-30T12:15:08.017
Modified: 2024-11-21T06:27:18.430
Link: CVE-2021-42122
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD