CVE-2021-34683

An issue was discovered in EXCELLENT INFOTEK CORPORATION (EIC) E-document System 3.0. A remote attacker can use kw/auth/bbs/asp/get_user_email_info_bbs.asp to obtain the contact information (name and e-mail address) of everyone in the entire organization. This information can allow remote attackers to perform social engineering or brute force attacks against the system login page.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:eic:e-document_system:3.0:*:*:*:*:*:*:*

Information

Published : 2021-06-16 05:15

Updated : 2021-06-24 11:19


NVD link : CVE-2021-34683

Mitre link : CVE-2021-34683


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

eic

  • e-document_system