First published: Wed Dec 01 2021(Updated: )
Sunnet eHRD e-mail delivery task schedule’s serialization function has inadequate input object validation and restriction, which allows a post-authenticated remote attacker with database access privilege, to execute arbitrary code and control the system or interrupt services.
Credit: twcert@cert.org.tw twcert@cert.org.tw
Affected Software | Affected Version | How to fix |
---|---|---|
Sun Ehrd | =8 | |
Sun Ehrd | =9 | |
=8 | ||
=9 |
Update Sunnet eHRD version to 10
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.