aEnrich a+HRD has insufficient user input validation for specific API parameter. An unauthenticated remote attacker can exploit this vulnerability to inject arbitrary SQL commands to access, modify and delete database.
| Software | From | Fixed in |
|---|---|---|
| aenrich / a+hrd | 6.8 | 6.8.x |
| aenrich / a+hrd | 7.0 | 7.0.x |