Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Veritystream Subscribe
Filtered by product Msow Solutions
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-32077 1 Veritystream 1 Msow Solutions 2022-07-12 5.0 MEDIUM 7.5 HIGH
Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous internet user to discover Social Security Number (SSN) values via a brute-force attack on a (sometimes hidden) search field, because the last four SSN digits are part of the supported combination of search selectors. This discloses doctors' and nurses' social security numbers and PII.