ALI AL SINAN

1 exploit Active since Dec 2020
CVE-2020-35737 EXPLOITDB HIGH text WRITEUP
Newgen eGov <12.0 - Info Disclosure
In Correspondence Management System (corms) in Newgen eGov 12.0, an attacker can modify other users' profile information by manipulating the unvalidated UserIndex parameter, aka Insecure Direct Object Reference.
CVSS 7.5