SSA-352521 PUBLISHED CVSS 5.300000190734863 MEDIUM

An incorrect authorization check in Mendix applications could allow an attacker to bypass write permissions to attributes of objects under certain circumstances. Mendix has released an update for Mendix and recommends to update to the latest version.

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:N/E:P/RL:O/RC:C

Affected Products

VendorProductVersions
Mendix Applications using Mendix 7
Mendix Applications using Mendix 9
Mendix Applications using Mendix 8

Timeline

References

Open in Interactive Console →