CVE-2020-10510: Sunnet eHRD - Broken Access Control
Published Mar 27, 2020
·Updated
Sunnet eHRD, a human training and development management system, contains a vulnerability of Broken Access Control. After login, attackers can use a specific URL, access unauthorized functionality and data.
Affected Software
2 affected components
Sun eHRD=8
Sun eHRD=9
Remediation
Information
Update to version 10 or latest, or contact Sunnet for fixing patch.
Event History
Mar 27, 2020
CVE Published
via MITRE·07:35 AM
Data Sourced
via MITRE·07:35 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-10510?
CVE-2020-10510 is rated as a critical vulnerability due to its broken access control leading to unauthorized data access.
2
How do I fix CVE-2020-10510?
To fix CVE-2020-10510, update the Sun eHRD software to the latest secure version provided by the vendor.
3
What are the affected versions for CVE-2020-10510?
CVE-2020-10510 affects Sun eHRD versions 8 and 9.
4
What types of attacks are possible with CVE-2020-10510?
With CVE-2020-10510, attackers can exploit the vulnerability to access unauthorized functionalities and sensitive data.
5
Is CVE-2020-10510 applicable to any other software apart from Sun eHRD?
CVE-2020-10510 is specifically applicable to Sun eHRD and does not affect other software.