An Insecure Direct Object Reference (IDOR) vulnerability in Annex Cloud Loyalty Experience Platform <2021.1.0.1 allows any authenticated attacker to modify any existing user, including users assigned to different environments and clients. It was fixed in v2021.1.0.2.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-03T23:10:31.404Z

Reserved: 2021-04-30T00:00:00

Link: CVE-2021-31927

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-06-10T15:15:09.483

Modified: 2024-11-21T06:06:31.780

Link: CVE-2021-31927

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.