External Control of File Name Vulnerability in Soar Cloud HRD Human Resource Management System
CVE-2025-48783

8.8HIGH

What is CVE-2025-48783?

A vulnerability in the delete file function of the Soar Cloud HRD Human Resource Management System allows remote attackers to manipulate file paths. This flaw enables them to delete arbitrary files from the server, potentially compromising data integrity and security. It is crucial for users of the affected versions to implement immediate security measures to mitigate risks associated with unauthorized file deletions.

Affected Version(s)

HRD Human Resource Management System 0 <= 7.3.2025.0408

References

CVSS V4

Score:
8.8
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48783 : External Control of File Name Vulnerability in Soar Cloud HRD Human Resource Management System