aEnrich a+HRD has inadequate privilege restrictions, an unauthenticated remote attacker can use the API function to upload and execute malicious scripts to control the system or disrupt service.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-31226 | aEnrich a+HRD has inadequate privilege restrictions, an unauthenticated remote attacker can use the API function to upload and execute malicious scripts to control the system or disrupt service. |
Fixes
Solution
Update version to eHRD6.8.1039V768
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.twcert.org.tw/tw/cp-132-5970-2f405-1.html |
|
History
No history.
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2024-09-16T17:24:17.624Z
Reserved: 2022-03-08T00:00:00.000Z
Link: CVE-2022-26676
No data.
Status : Modified
Published: 2022-04-07T19:15:09.113
Modified: 2024-11-21T06:54:19.287
Link: CVE-2022-26676
No data.
OpenCVE Enrichment
No data.
EUVD