Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s date attribute(s) allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format into date fields, which leads to breaking the object page that the date field is present.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: NCSC.ch
Published: 2021-11-30T11:28:12
Updated: 2024-08-04T03:30:36.387Z
Reserved: 2021-10-08T00:00:00
Link: CVE-2021-42121
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-11-30T12:15:07.967
Modified: 2024-11-21T06:27:18.300
Link: CVE-2021-42121
Redhat
No data.