CVE-2021-22853

Publication date

2021-02-17 13:30:19

Family

twcert

State

PUBLISHED

Description

The HR Portal of Soar Cloud System fails to manage access control. While obtaining user ID, remote attackers can access sensitive data via a specific data packet, such as user’s login information, further causing the login function not to work.