CVE-2026-6835

The a+HCM developed by aEnrich has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload arbitrary files to any path, including HTML documents, which may result in a XSS-like effect.
Configurations

No configuration.

History

22 Apr 2026, 04:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-22 04:16

Updated : 2026-06-17 11:01


NVD link : CVE-2026-6835

Mitre link : CVE-2026-6835

CVE.ORG link : CVE-2026-6835


JSON object : View

Products Affected

No product.

CWE
CWE-434

Unrestricted Upload of File with Dangerous Type