CVE-2024-10438: Sun.net Ehrd Ctms

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

The eHRD CTMS from Sunnet has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to bypass authentication by satisfying specific conditions in order to access certain functionalities.

Affected products

  • Sun.net Ehrd Ctms: before 10.14 (fixed in 10.14)

Published 2024-10-28. Last modified 2026-06-17.