CVE-2026-7490Disclosure(sun.net / ehrd_cpas)

LOWCVSS 7.2 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch sun.net ehrd_cpas systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

CTMS and CPAS developed by Sunnet has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-434

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ehrd_cpas
  • ehrd_ctms

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • Peaked 1d ago at 3 mentions (2026-05-02); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
ehrd_cpasehrd_ctms

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-05-02: 3Mentions · 2026-05-14: 1Patch / Workaround · 2026-05-14: 1Technical Details · 2026-05-02: 3Technical Details · 2026-05-14: 105-0205-14
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-05-023
Disclosure3
2026-05-141
Patch1
Full discourse4 posts
  • CVE@CVEnew
    Disclosure

    CVE-2026-7490 CTMS and CPAS developed by Sunnet has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby en… https://www.cve.org/CVERecord?id=CVE-2026-7490

    Post summary

    The tweet announces CVE-2026-7490, describing an arbitrary file upload flaw that lets privileged attackers upload and execute web shells, but it provides no proof‑of‑concept, exploit code, or patch details.

    00010247
    57.4K followersView on X
  • ADK Cyber@ADKCyber
    Patch

    A critical vulnerability (CVE-2026-7490) in Sunnet’s CTMS and CPAS allows remote attackers to upload web shells and execute code. Healthcare and SMB IT teams should verify patches and review access controls promptly. #cybersecurity

    Post summary

    CVE-2026-7490 is a critical remote code execution vulnerability in Sunnet’s CTMS and CPAS that allows attackers to upload web shells. Users are urged to verify patches and strengthen access controls promptly.

    0000041
    80 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-7490 Arbitrary File Upload and Remote Code Execution in Sunnet CTMS and... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-7490 Vulnerability Alert Subscriptions: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=1

    Post summary

    The tweet announces CVE-2026-7490, describing arbitrary file upload leading to RCE in Sunnet CTMS, without providing PoC, exploit, patch, or active exploitation details.

    0000078
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-7490 CTMS and CPAS developed by Sunnet has an Arbitrary File Upload vulnerability, allowing privileged remote attackers to upload and execute web shell backdoors, thereby en… https://www.cve.org/CVERecord?id=CVE-2026-7490 ----- Traducción: CVE-2026-7490 CTM… http://infoflow.cloud`

    Post summary

    The tweet announces CVE‑2026‑7490, highlighting an arbitrary file upload flaw that allows privileged remote attackers to deploy web shells.

    0000031
    75 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appsun.netehrd_cpas---
Appsun.netehrd_ctms---

Explore more