Description
Sunnet eHRD has inadequate filtering for special characters in URLs, which allows a remote attacker to perform path traversal attacks without authentication, access restricted paths and download system files.
No analysis available yet.
Remediation
Vendor Solution
Update Sunnet eHRD version to 10
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-30293 | Sunnet eHRD has inadequate filtering for special characters in URLs, which allows a remote attacker to perform path traversal attacks without authentication, access restricted paths and download system files. |
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-5353-4ebee-1.html |
|
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-17T02:21:18.827Z
Reserved: 2021-11-04T00:00:00.000Z
Link: CVE-2021-43358
No data.
Status : Modified
Published: 2021-12-01T02:15:07.257
Modified: 2024-11-21T06:29:07.480
Link: CVE-2021-43358
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD