High severity7.5NVD Advisory· Published May 6, 2021· Updated Jun 17, 2026
CVE-2021-32077
CVE-2021-32077
Description
Primary Source Verification in VerityStream MSOW Solutions before 3.1.1 allows an anonymous internet user to discover Social Security Number (SSN) values via a brute-force attack on a (sometimes hidden) search field, because the last four SSN digits are part of the supported combination of search selectors. This discloses doctors' and nurses' social security numbers and PII.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- VerityStream/MSOW Solutionsdescription
- Range: <3.1.1
Patches
Vulnerability mechanics
References
2- www.marbasec.com/blog/cve-2021-32077-fun-with-social-security-numbersnvdExploitThird Party Advisory
- www.veritystream.com/legacy/msow-solutionsnvdVendor Advisory
News mentions
0No linked articles in our index yet.