CVE-2021-22565

An attacker could prematurely expire a verification code, making it unusable by the patient, making the patient unable to upload their TEKs to generate exposure notifications. We recommend upgrading the Exposure Notification server to V1.1.2 or greater.
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:exposure_notification_verification_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-12-09 13:15

Updated : 2024-02-28 18:48


NVD link : CVE-2021-22565

Mitre link : CVE-2021-22565

CVE.ORG link : CVE-2021-22565


JSON object : View

Products Affected

google

  • exposure_notification_verification_server
CWE
NVD-CWE-Other CWE-284

Improper Access Control