CVE-2023-20852: Aenrich A+hrd

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

aEnrich Technology a+HRD has a vulnerability of Deserialization of Untrusted Data within its MSMQ interpreter. An unauthenticated remote attacker can exploit this vulnerability to execute arbitrary system commands to perform arbitrary system operation or disrupt service.

Affected products

  • Aenrich A+hrd: version 6.8.1039v844 only

Published 2023-04-27. Last modified 2026-06-17.