CVE-2025-0586
HIGHaEnrich Technology - Insecure Deserialization
Title source: llmDescription
The a+HRD from aEnrich Technology has an Insecure Deserialization vulnerability, allowing remote attackers with database modification privileges and regular system privileges to perform arbitrary code execution.
Scores
CVSS v3
7.2
EPSS
0.0186
EPSS Percentile
82.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-502
Status
published
Affected Products (1)
aenrich/a\+hrd
< 7.5
Timeline
Published
Jan 20, 2025
Tracked Since
Feb 18, 2026