CVE-2021-34676: High severity basix nex-forms – ultimate form builder vulnerability
Published Jul 19, 2021
·Updated
Basix NEX-Forms through 7.8.7 allows authentication bypass for Excel report generation.
Affected Software
1 affected component
Basixonline Nex-forms<=7.8.7
Event History
Jul 19, 2021
CVE Published
via MITRE·04:40 PM
Data Sourced
via MITRE·04:40 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-34676?
CVE-2021-34676 has a medium severity rating due to its potential for authentication bypass.
2
How do I fix CVE-2021-34676?
To fix CVE-2021-34676, update Basix NEX-Forms to a version beyond 7.8.7.
3
What impact does CVE-2021-34676 have on my system?
CVE-2021-34676 allows unauthorized users to generate Excel reports without proper authentication.
4
Which versions of Basix NEX-Forms are affected by CVE-2021-34676?
CVE-2021-34676 affects all versions of Basix NEX-Forms up to and including 7.8.7.
5
Is CVE-2021-34676 easy to exploit?
Yes, CVE-2021-34676 is considered relatively easy to exploit due to the nature of the authentication bypass.