CVE Vulnerabilities

CVE-2021-43359

Published: Dec 01, 2021 | Modified: Jul 25, 2022
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9 HIGH
AV:N/AC:L/Au:S/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Sunnet eHRD has broken access control vulnerability, which allows a remote attacker to access account management page after being authenticated as a general user, then perform privilege escalation to execute arbitrary code and control the system or interrupt services.

Affected Software

Name Vendor Start Version End Version
Ehrd Sun 8 (including) 8 (including)
Ehrd Sun 9 (including) 9 (including)

References