aEnrich a+HRD - Deserialization of Untrusted Data
CVE-2023-20853
9.8CRITICAL
What is CVE-2023-20853?
The a+HRD product from aEnrich Technology is susceptible to a vulnerability that arises from deserialization of untrusted data within its MSMQ asynchronous message processing system. This flaw allows an unauthenticated remote attacker to exploit the vulnerability, potentially enabling the execution of arbitrary system commands. Such exploitation could lead to unauthorized system operations or disrupt critical services, highlighting the importance of implementing robust security measures to mitigate this risk.
Affected Version(s)
a+HRD 6.8.1039V844
