CVE-2021-36723
6.1MEDIUMEmuse - eServices / eNvoice Exposure Of Private Personal Information due to lack of identification mechanisms and predictable IDs an attacker can scrape all the files on the service.
Veröffentlicht: 12/29/2021Aktualisiert: 11/21/2024
Beschreibung
Emuse - eServices / eNvoice Exposure Of Private Personal Information due to lack of identification mechanisms and predictable IDs an attacker can scrape all the files on the service.
KI-AnalyseKI-gestützt
Betroffene Produkte
emuse_-_eservices_\/_envoice_projectemuse_-_eservices_\/_envoice
-
Referenzen
- https://www.gov.il/en/departments/faq/cve_advisoriesThird Party Advisory
- https://www.gov.il/en/departments/faq/cve_advisoriesThird Party Advisory