aEnrich a+HRD has improper validation for login function. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and access API function to perform arbitrary system command or disrupt service.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.twcert.org.tw/tw/cp-132-6795-f7fe6-1.html |
History
No history.
MITRE
Status: PUBLISHED
Assigner: twcert
Published: 2023-01-03T00:00:00
Updated: 2024-08-03T11:10:32.451Z
Reserved: 2022-08-30T00:00:00
Link: CVE-2022-39042
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-01-03T03:15:09.877
Modified: 2024-11-21T07:17:26.100
Link: CVE-2022-39042
Redhat
No data.