aEnrich Technology a+HRD SQL Injection Vulnerability

Vulnerability

A SQL injection vulnerability has been identified in a+HRD by aEnrich Technology, affecting versions through 7.5. This vulnerability allows unauthenticated remote attackers to inject arbitrary SQL commands, potentially leading to unauthorized reading, modification, or deletion of database contents.

Impact

Exploitation of this vulnerability allows for arbitrary SQL injection, enabling attackers to manipulate database contents. This could include reading sensitive information, modifying data, or deleting database entries.

Remediation

Users are advised to upgrade to version 6.8 or later and install the latest patches. For assistance, contact aEnrich customer service.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.