Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Please refer to the aEnrich advisory to upgrade to version 6.8 or later and install the latest patches, or contact aEnrich customer service for assistance.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 22 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 22 Apr 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Aenrich
Aenrich a+hrd |
|
| Vendors & Products |
Aenrich
Aenrich a+hrd |
Wed, 22 Apr 2026 04:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The a+HRD developed by aEnrich has a Missing Authorization vulnerability, allowing authenticated remote attackers to arbitrarily read database contents through a specific API method. | |
| Title | aEnrich|a+HRD - Missing Authorization | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-04-22T12:44:33.096Z
Reserved: 2026-04-22T02:48:34.692Z
Link: CVE-2026-6834
Updated: 2026-04-22T12:43:58.874Z
Status : Deferred
Published: 2026-04-22T04:16:09.307
Modified: 2026-04-29T20:46:33.890
Link: CVE-2026-6834
No data.
OpenCVE Enrichment
Updated: 2026-04-22T06:15:10Z