Vulnerabilities > CVE-2021-38095 - Unspecified vulnerability in Planview Spigit 4.5.3
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
NONE Availability impact
NONE Summary
The REST API in Planview Spigit 4.5.3 allows remote unauthenticated attackers to query sensitive user accounts data, as demonstrated by an api/v1/users/1 request.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |