Critical severity9.8NVD Advisory· Published Nov 12, 2025· Updated Jun 17, 2026
CVE-2025-12871
CVE-2025-12871
Description
The a+HRD developed by aEnrich has an Authentication Abuse vulnerability, allowing unauthenticated remote attackers to craft administrator access tokens and use them to access the system with elevated privileges.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- www.chtsecurity.com/news/b97e8337-6b0c-43e8-8e8c-187b7c0e13c2nvdPress/Media CoverageThird Party Advisory
- www.twcert.org.tw/en/cp-139-10487-12a32-2.htmlnvdThird Party Advisory
- www.twcert.org.tw/tw/cp-132-10486-a3459-1.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.