CVE-2021-43359

Publication date

2021-12-01 02:00:23

Family

twcert

State

PUBLISHED

Description

Sunnet eHRD has broken access control vulnerability, which allows a remote attacker to access account management page after being authenticated as a general user, then perform privilege escalation to execute arbitrary code and control the system or interrupt services.