7.5
CVSSv2

CVE-2021-35964

Published: 19/07/2021 Updated: 27/10/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The management page of the Orca HCM digital learning platform does not perform identity verification, which allows remote malicious users to execute the management function without logging in, access members’ information, modify and delete the courses in system, thus causing users fail to access the learning content.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

learningdigital orca hcm