Vulnerabilities > CVE-2021-22853 - Unspecified vulnerability in HR Portal Project HR Portal 7.3.2020.1013

047910
CVSS 5.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
LOW
network
low complexity
hr-portal-project

Summary

The HR Portal of Soar Cloud System fails to manage access control. While obtaining user ID, remote attackers can access sensitive data via a specific data packet, such as user’s login information, further causing the login function not to work.

Vulnerable Configurations

Part Description Count
Application
Hr_Portal_Project
1