A missing authentication for critical function vulnerability in SUNNET Corporate Training Management System before 10.11 allows remote attackers to access deployment functionality without prior authentication.
The system does not require authentication before granting access to critical functions related to application deployment (CWE-306: Missing Authentication for Critical Function). A remote attacker, without possessing an account or any credentials, can directly invoke these functions over the network. The absence of an identity verification mechanism means that no password or access token serves as a protective barrier.
An attacker can gain unauthorized access to the system's deployment functions, which may lead to violations of confidentiality, integrity, and availability of data and the entire training management system.
Update SUNNET Corporate Training Management System to version 10.11 or later. Details are available in the manufacturer's references and security advisory: https://zuso.ai/advisory/za-2025-10
SUNNET Corporate Training Management System (Sun.Net Ehrd Ctms) in versions prior to 10.11
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XSun.net Ehrd Ctms
APPSun.Net< 10.11
Related vulnerabilities
Brak autoryzacji w SUNNET CTMS umożliwia nieautoryzowane wdrożenie aplikacji
RCE poprzez external control of file path w SUNNET CTMS
SQL Injection w SUNNET Corporate Training Management System
SQL Injection w eHDR CTMS (Sunnet) umożliwia nieautoryzowany dostęp do bazy
CTMS developed by Sunnet has a SQL Injection vulnerability, allowing authenticated remote attackers to inject ...