Deserialization Vulnerability in Soar Cloud HRD Human Resource Management System
CVE-2025-48780
9.9CRITICAL
What is CVE-2025-48780?
A deserialization of untrusted data vulnerability exists in the download file function of the Soar Cloud HRD Human Resource Management System prior to version 7.3.2025.0408. This flaw enables remote attackers to manipulate crafted serialized objects, potentially leading to arbitrary command execution on affected systems.
Affected Version(s)
HRD Human Resource Management System 0 <= 7.3.2025.0408