CVE-2020-35737
30.12.2020, 20:15
In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.Enginsight
Vendor | Product | Version |
---|---|---|
newgensoft | egov | 12.0 |
𝑥
= Vulnerable software versions
References