Improper Input Validation in ONLYOFFICE Product
CVE-2021-43448
5.3MEDIUM
What is CVE-2021-43448?
ONLYOFFICE Document Server is susceptible to improper input validation which enables attackers to impersonate users by spoofing their names in documents. This vulnerability arises when an attacker knows the document ID, allowing them to manipulate user interactions within the platform. Such flaws may undermine user trust and data integrity, highlighting the importance of robust input validation mechanisms.
