CVE-2022-39042
03.01.2023, 03:15
aEnrich a+HRD has improper validation for login function. An unauthenticated remote attacker can exploit this vulnerability to bypass authentication and access API function to perform arbitrary system command or disrupt service.Enginsight
| Vendor | Product | Version |
|---|---|---|
| aenrich | a\+hrd | 6.8 |
| aenrich | a\+hrd | 7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration