The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user.
For reference see: CVE-2024-52276
This issue affects DocuSign: through 2024-12-04.
Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-46110 | User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. For reference see: CVE-2024-52276 This issue affects DocuSign: through 2024-12-04. |
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 06 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Thu, 05 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Docusign
Docusign docusign |
|
| CPEs | cpe:2.3:a:docusign:docusign:-:*:*:*:*:*:*:* | |
| Vendors & Products |
Docusign
Docusign docusign |
|
| Metrics |
ssvc
|
ssvc
|
Thu, 05 Dec 2024 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ** INITIAL LIMITED RELEASE ** User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. This issue affects [WITHHELD]: through 2024-12-04. | User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. For reference see: CVE-2024-52276 This issue affects DocuSign: through 2024-12-04. |
| Title | AI Assistant PDF Document Spoofing in [WITHHELD] | AI Assistant PDF Document Spoofing in DocuSign |
| References |
|
Wed, 04 Dec 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 04 Dec 2024 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ** INITIAL LIMITED RELEASE ** User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. This issue affects [WITHHELD]: through 2024-12-04. | |
| Title | AI Assistant PDF Document Spoofing in [WITHHELD] | |
| Weaknesses | CWE-451 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VULSec
Published:
Updated: 2025-01-06T17:39:56.341Z
Reserved: 2024-11-06T08:35:09.852Z
Link: CVE-2024-52269
Updated: 2024-12-04T14:39:08.492Z
Status : Awaiting Analysis
Published: 2024-12-04T12:15:19.500
Modified: 2025-01-06T18:15:20.720
Link: CVE-2024-52269
No data.
OpenCVE Enrichment
No data.
EUVD