← Back to CVE List
CVE-2022-26675
aEnrich a+HRD has inadequate filtering for special characters in URLs. An unauthenticated remote attacker can bypass authentication and perform path traversal attacks to access arbitrary files under website root directory.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt