Unrestricted File Upload Vulnerability in Soar Cloud HRD by Soar Technologies
CVE-2025-48782

9.9CRITICAL

What is CVE-2025-48782?

An unrestricted file upload vulnerability has been identified in the Soar Cloud HRD Human Resource Management System, allowing malicious users to upload files of dangerous types. This can result in the execution of arbitrary system commands. The security flaw impacts versions up to 7.3.2025.0408 and poses a significant risk to users, enabling unauthorized access to system functionalities. Organizations using this platform are urged to implement immediate security measures to mitigate potential attacks.

Affected Version(s)

HRD Human Resource Management System 0 <= 7.3.2025.0408

References

CVSS V4

Score:
9.9
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48782 : Unrestricted File Upload Vulnerability in Soar Cloud HRD by Soar Technologies