CVE-2021-44836
18.01.2022, 20:15
An issue was discovered in Delta RM 1.2. The /risque/risque/workflow/reset endpoint is lacking access controls, and it is possible for an unprivileged user to reopen a risk with a POST request, using the risqueID parameter to identify the risk to be re-opened.Enginsight
Vendor | Product | Version |
---|---|---|
deltarm | delta_rm | 1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration