Missing Authorization Vulnerability in Soar Cloud HRD Human Resource Management System
CVE-2025-48784

8.8HIGH

What is CVE-2025-48784?

A missing authorization flaw in the Soar Cloud HRD Human Resource Management System, up to version 7.3.2025.0408, allows unauthorized remote attackers to change critical system settings. This vulnerability poses a significant risk as it enables malicious users to alter configurations without appropriate permissions, potentially leading to unauthorized access and control over sensitive information.

Affected Version(s)

HRD Human Resource Management System 0 <= 7.3.2025.0408

References

CVSS V4

Score:
8.8
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-48784 : Missing Authorization Vulnerability in Soar Cloud HRD Human Resource Management System