PT-2022-19202 · Unknown · Aenrich A+Hrd 5.X Learning Management Key Performance Indicator System

Sameer S. Mohite

·

Published

2022-09-09

·

Updated

2023-08-08

·

CVE-2022-28741

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions aEnrich a+HRD 5.x Learning Management Key Performance Indicator System version 5.x
Description The issue is related to a local file inclusion (LFI) vulnerability due to missing input validation.
Recommendations For version 5.x, update to a version that includes input validation to prevent local file inclusion. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Weakness Enumeration

Related Identifiers

CVE-2022-28741

Affected Products

Aenrich A+Hrd 5.X Learning Management Key Performance Indicator System