SQL Injection Vulnerability in a+HRD by aEnrich
CVE-2026-6833

7.1HIGH

Key Information:

Vendor

Aenrich

Status
Vendor
CVE Published:
22 April 2026

What is CVE-2026-6833?

The a+HRD system developed by aEnrich is susceptible to SQL Injection, enabling authenticated remote attackers to execute arbitrary SQL queries. This vulnerability can lead to unauthorized access to sensitive database information, posing a significant risk to data integrity and confidentiality.

Affected Version(s)

a+HRD 0 <= 7.1

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.