cvedb.io
CVE-2021-42121
MEDIUM · CVSS 4.3
EPSS exploitation probability: 0%
Published 2021-11-30T12:15:07.967 · Last modified 2026-06-17T04:09:22.953

Summary

Insufficient Input Validation in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 on an object’s date attribute(s) allows an authenticated remote attacker with Object Modification privileges to insert an unexpected format into date fields, which leads to breaking the object page that the date field is present.

Affected products

businessdnasolutions — topease

Does this affect you?

Add your gear to cvedb and we'll alert you only when businessdnasolutions ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.