aEnrich a+HRD has inadequate privilege restrictions, an unauthenticated remote attacker can use the API function to upload and execute malicious scripts to control the system or disrupt service.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-5970-2f405-1.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2022-04-07T18:22:44.359529Z
Updated: 2024-09-16T17:24:17.624Z
Reserved: 2022-03-08T00:00:00
Link: CVE-2022-26676
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-04-07T19:15:09.113
Modified: 2024-11-21T06:54:19.287
Link: CVE-2022-26676
Redhat
No data.