← Back to CVE List

CVE-2021-32077

Published: 2021-05-06T23:15Z
Last Modified: 2024-11-21T06:06Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous internet user to discover Social Security Number (SSN) values via a brute-force attack on a (sometimes hidden) search field, because the last four SSN digits are part of the supported combination of search selectors. This discloses doctors' and nurses' social security numbers and PII. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt