CVE-2025-12871

Publication date

2025-11-12 07:38:30

Family

twcert

State

PUBLISHED

Description

The a+HRD developed by aEnrich has an Authentication Abuse vulnerability, allowing unauthenticated remote attackers to craft administrator access tokens and use them to access the system with elevated privileges.