VYPR

eHR

by Redsea Cloud

CVEs (1)

  • CVE-2024-14037CriJul 2, 2026
    risk 0.00cvss 9.8epss 0.01

    Redsea Cloud eHR contains an arbitrary file upload vulnerability that allows unauthenticated attackers to achieve remote code execution by uploading malicious files through the PtFjk.mob servlet endpoint. Attackers can submit a multipart POST request with a JSP webshell…