Privilege Escalation Vulnerability in OrangeHRM by OrangeHRM
CVE-2025-44040
7.2HIGH
What is CVE-2025-44040?
An identified issue in OrangeHRM version 5.7 permits unauthorized users to escalate their privileges through a flaw in the UserService.php file, specifically within the checkFOrOldHash function. This vulnerability could potentially allow attackers to gain elevated access, compromising the integrity and security of the application.
