CVE-2023-43900: Emudhra Emsigner
Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.
Insecure Direct Object References (IDOR) in eMudhra emSigner v2.8.7 allow authenticated attackers to gain unauthorized access to application content and view sensitive data of other users via manipulation of the documentID and EncryptedDocumentId parameters.
Affected products
- Emudhra Emsigner: version 2.8.7 only
Published 2023-11-14. Last modified 2026-08-28.