Insecure Direct Object References (IDOR) in EMSigner v2.8.7 allow attackers to gain unauthorized access to application content and view sensitive data of other users via manipulation of the documentID and EncryptedDocumentId parameters.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-03T16:00:20.161Z

Reserved: 2023-09-25T00:00:00

Link: CVE-2023-43900

cve-icon Vulnrichment

Updated: 2024-08-02T19:52:11.867Z

cve-icon NVD

Status : Modified

Published: 2023-11-14T05:15:08.700

Modified: 2024-11-21T08:24:58.967

Link: CVE-2023-43900

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.