aEnrich a+HRD - Server-Side Request Forgery (SSRF)
Vulnerability Description
aEnrich’s a+HRD has inadequate filtering for specific URL parameter. An unauthenticated remote attacker can exploit this vulnerability to send arbitrary HTTP(s) request to launch Server-Side Request Forgery (SSRF) attack, to perform arbitrary system command or disrupt service.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-39039
Credits & Attribution
No credits recorded in the NVD database.
More from aEnrich
View All →Affected Vendor
aEnrich
View all reports →