CNNVD-202509-010 Information

CNNVD ID

CNNVD-202509-010

CVE-2025-9570

  • CNNVD Published: 2025-09-01

Description (Chinese)

Sunnet eHRD CTMS是中国旭联(Sunnet)公司的一个人力资源发展和临床培训管理系统。 Sunnet eHRD CTMS存在安全漏洞,该漏洞源于相对路径遍历问题,可能导致任意文件读取。

Description (English)

Sunnet eHRD CTMS is a human resources development and clinical training management system of Sunnet. There is a security gap in Sunnet eHRD CTMS, which stems from the problem of the relative path, which may lead to arbitrary access to documents.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

旭联

Published

2025-09-01

Last Modified

2026-02-24

References

https://www.twcert.org.tw/tw/cp-132-10356-ea431-1.html https://www.twcert.org.tw/en/cp-139-10357-7de41-2.html https://nvd.nist.gov/vuln/detail/CVE-2025-9570

Share on: