PT-2025-35440 · Sunnet · Ehrd Ctms

Linwz

+1

·

Published

2025-09-01

·

Updated

2025-09-01

·

CVE-2025-9569

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
The eHRD developed by Sunnet has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2025-9569

Affected Products

Ehrd Ctms