CVE-2022-28740: High severity aenrich vulnerability
aEnrich eHRD Learning Management Key Performance Indicator System 5+ exposes Sensitive Information to an Unauthorized Actor.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-28740?
CVE-2022-28740 is a vulnerability that exposes sensitive information to an unauthorized actor in the aEnrich eHRD Learning Management Key Performance Indicator System 5+.
What is the severity of CVE-2022-28740?
CVE-2022-28740 has a severity rating of 7.5 out of 10, which is considered high.
Which software versions are affected by CVE-2022-28740?
The affected software versions are aEnrich eHRD Learning Management Key Performance Indicator System 5.0 to 5.4.1125v112, 5.5 to 5.5.1098v156, 5.6 to 5.6.1067v110, and 6.0 to 7.0.
How can I fix CVE-2022-28740?
To fix CVE-2022-28740, upgrade the aEnrich eHRD Learning Management Key Performance Indicator System to a version that is not vulnerable.
Where can I find more information about CVE-2022-28740?
You can find more information about CVE-2022-28740 on the GitHub page and the official website of aEnrich.