First published: Tue Dec 13 2022(Updated: )
A vulnerability has been identified in Mendix Email Connector (All versions < V2.0.0). Affected versions of the module improperly handle access control for some module entities. This could allow authenticated remote attackers to read and manipulate sensitive information.
Credit: productcert@siemens.com productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mendix | <2.0.0 | |
<2.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-45936 has a high severity rating due to improper access control allowing sensitive information exposure.
To fix CVE-2022-45936, upgrade to Mendix Email Connector version 2.0.0 or later.
CVE-2022-45936 affects all versions of Mendix Email Connector prior to 2.0.0.
Authenticated remote attackers can exploit CVE-2022-45936 to read and manipulate sensitive information.
CVE-2022-45936 can lead to unauthorized access and manipulation of sensitive information within the affected module.