Vulnerabilities > Newgensoft > Egov > 12.0

DATE CVE VULNERABILITY TITLE RISK
2020-12-30 CVE-2020-35737 Unspecified vulnerability in Newgensoft Egov 12.0
In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.
network
low complexity
newgensoft
7.5