Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Newgen Egov Correspondence Management System 安全漏洞
Vulnerability Description
Newgen Egov Correspondence Management System是美国Newgen公司的一个用于办公环境的信函管理软件。 Newgen eGov 12.0 Correspondence Management System存在安全漏洞,攻击者可利用该漏洞可以通过操纵未经验证的UserIndex参数,即不安全的直接对象引用,来修改其他用户的个人信息。
CVSS Information
N/A
Vulnerability Type
N/A