First published: Fri Feb 07 2025(Updated: )
An error when handling authorization related to the import / export interfaces on the RISC Platform prior to the saas-2021-12-29 release can potentially be exploited to access the import / export functionality with low privileges.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
RISC RISC Platform | <saas-2021-12-29 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-41528 has a medium severity level due to improper authorization allowing low privilege access to import/export functionalities.
To fix CVE-2021-41528, update your RISC Platform to the saas-2021-12-29 release or later.
CVE-2021-41528 affects all versions of RISC Platform prior to saas-2021-12-29.
CVE-2021-41528 is an authorization vulnerability that can be exploited through import/export interfaces.
Organizations using RISC Platform versions prior to saas-2021-12-29 are at risk due to CVE-2021-41528.