CVE-2021-41719

Maharashtra State Electricity Distribution Company Limited Mahavitran IOS Application 16.1 application till version 16.1 communicates using the GET method to process requests that contain sensitive information such as user account name and password, which can expose that information through the browser's history, referrers, web logs, and other sources.
Configurations

No configuration.

History

21 Mar 2025, 17:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-598
Summary
  • (es) Maharashtra State Electricity Distribution Company Limited Mahavitran IOS Application 16.1 la aplicación hasta la versión 16.1 se comunica utilizando el método GET para procesar solicitudes que contienen información confidencial como el nombre de la cuenta de usuario y la contraseña, que pueden exponer dicha información a través del historial del navegador, referentes, registros web y otras fuentes.

04 Mar 2025, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-04 21:15

Updated : 2025-03-21 17:15


NVD link : CVE-2021-41719

Mitre link : CVE-2021-41719

CVE.ORG link : CVE-2021-41719


JSON object : View

Products Affected

No product.

CWE
CWE-598

Use of GET Request Method With Sensitive Query Strings