onlinetolls in cdSoft Onlinetools-Smart Winhotel.MX 2021 allows an attacker to download sensitive information about any customer (e.g., data of birth, full address, mail information, and phone number) via GastKont Insecure Direct Object Reference.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-31756 | onlinetolls in cdSoft Onlinetools-Smart Winhotel.MX 2021 allows an attacker to download sensitive information about any customer (e.g., data of birth, full address, mail information, and phone number) via GastKont Insecure Direct Object Reference. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://myses.de/#about |
|
| https://myses.de/pdf/CVE2022-27247.pdf |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T05:25:32.257Z
Reserved: 2022-03-18T00:00:00
Link: CVE-2022-27247
No data.
Status : Modified
Published: 2022-05-13T15:15:08.940
Modified: 2024-11-21T06:55:29.567
Link: CVE-2022-27247
No data.
OpenCVE Enrichment
No data.
EUVD