Security Advisory

CVE-2021-31927

4.3
MEDIUM

Vulnerability Description

An Insecure Direct Object Reference (IDOR) vulnerability in Annex Cloud Loyalty Experience Platform <2021.1.0.1 allows any authenticated attacker to modify any existing user, including users assigned to different environments and clients. It was fixed in v2021.1.0.2.
Published Date June 10, 2021
Official Source NIST NVD Advisory