CVE-2020-10508: Sunnet eHRD - Sensitive Data Exposure
Published Mar 27, 2020
·Updated
Sunnet eHRD, a human training and development management system, improperly stores system files. Attackers can use a specific URL and capture confidential information.
Affected Software
2 affected components
Sun eHRD=8
Sun eHRD=9
Remediation
Information
Update to version 10 or latest, or contact Sunnet for fixing patch.
Event History
Mar 27, 2020
CVE Published
via MITRE·07:35 AM
Data Sourced
via MITRE·07:35 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-10508?
CVE-2020-10508 is rated as a high severity vulnerability due to improper file storage leading to potential data exposure.
2
How do I fix CVE-2020-10508?
To mitigate CVE-2020-10508, ensure that system files are securely stored and restrict access to sensitive information.
3
What type of vulnerability is CVE-2020-10508?
CVE-2020-10508 is an information disclosure vulnerability caused by improper file handling.
4
What systems are affected by CVE-2020-10508?
CVE-2020-10508 affects Sunnet eHRD versions 8 and 9.
5
Can CVE-2020-10508 lead to data breaches?
Yes, CVE-2020-10508 can potentially lead to data breaches by exposing confidential information through accessible URLs.