Description

The eHRD CTMS from Sunnet has an Insecure Direct Object Reference (IDOR) vulnerability, allowing unauthenticated remote attackers to modify a specific parameter to access arbitrary files uploaded by any user.

INFO

Published Date :

2024-10-28T02:49:34.913Z

Last Modified :

2024-10-28T12:50:33.935Z

Source :

twcert
AFFECTED PRODUCTS

The following products are affected by CVE-2024-10439 vulnerability.

Vendors Products
Sun.net
  • Ehrd Ctms
Sunnet
  • Ehrd Ctms
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-10439.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact