Medium severity5.3NVD Advisory· Published Oct 28, 2024· Updated Jun 17, 2026
CVE-2024-10439
CVE-2024-10439
Description
The eHRD CTMS from Sunnet has an Insecure Direct Object Reference (IDOR) vulnerability, allowing unauthenticated remote attackers to modify a specific parameter to access arbitrary files uploaded by any user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
2- www.twcert.org.tw/en/cp-139-8167-a2c0d-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-8166-085c4-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.