First published: Mon Jul 19 2021(Updated: )
Basix NEX-Forms through 7.8.7 allows authentication bypass for Excel report generation.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Basix NEX-Forms – Ultimate Form Builder | <=7.8.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-34676 has a medium severity rating due to its potential for authentication bypass.
To fix CVE-2021-34676, update Basix NEX-Forms to a version beyond 7.8.7.
CVE-2021-34676 allows unauthorized users to generate Excel reports without proper authentication.
CVE-2021-34676 affects all versions of Basix NEX-Forms up to and including 7.8.7.
Yes, CVE-2021-34676 is considered relatively easy to exploit due to the nature of the authentication bypass.