CVE-2024-52269

User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. For reference see: CVE-2024-52276 This issue affects DocuSign: through 2024-12-04.
Configurations

No configuration.

History

06 Jan 2025, 18:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1

05 Dec 2024, 11:15

Type Values Removed Values Added
References
  • () https://www.loom.com/share/65ce5423d2a04e0bbd2688a178d5427f -
Summary
  • (es) ** LANZAMIENTO LIMITADO INICIAL ** La vulnerabilidad de tergiversación de información crítica en la interfaz de usuario (IU) en [WITHHELD] permite la suplantación de contenido. El asistente de inteligencia artificial de SaaS ignora el contenido oculto que se muestra después de firmar, lo que engaña al usuario. Este problema afecta a [WITHHELD]: hasta el 4 de diciembre de 2024.
Summary (en) ** INITIAL LIMITED RELEASE ** User Interface (UI) Misrepresentation of Critical Information vulnerability in [WITHHELD] allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. This issue affects [WITHHELD]: through 2024-12-04. (en) User Interface (UI) Misrepresentation of Critical Information vulnerability in DocuSign allows Content Spoofing. The SaaS AI assistant ignores hidden content that is rendered after signing, misleading the user. For reference see: CVE-2024-52276 This issue affects DocuSign: through 2024-12-04.

04 Dec 2024, 12:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-04 12:15

Updated : 2025-01-06 18:15


NVD link : CVE-2024-52269

Mitre link : CVE-2024-52269

CVE.ORG link : CVE-2024-52269


JSON object : View

Products Affected

No product.

CWE
CWE-451

User Interface (UI) Misrepresentation of Critical Information