CVE-2022-28741

Severity CVSS v4.0:
Pending analysis
Type:
CWE-22 Path Traversal
Publication date:
09/09/2022
Last modified:
08/08/2023

Description

aEnrich a+HRD 5.x Learning Management Key Performance Indicator System has a local file inclusion (LFI) vulnerability that occurs due to missing input validation in v5.x

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:aenrich:a\+hrd:*:*:*:*:*:*:*:* 5.0 (including) 5.4.1125v112 (excluding)
cpe:2.3:a:aenrich:a\+hrd:*:*:*:*:*:*:*:* 5.5 (including) 5.5.1098v156 (excluding)
cpe:2.3:a:aenrich:a\+hrd:*:*:*:*:*:*:*:* 5.6 (including) 5.6.1067v110 (excluding)
cpe:2.3:a:aenrich:a\+hrd:*:*:*:*:*:*:*:* 6.0 (including) 7.0 (excluding)