CVE-2025-48784
HIGHSoar Cloud HRD <7.3.2025.0408 - Info Disclosure
Title source: llmDescription
A missing authorization vulnerability in Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to modify system settings without prior authorization.
Exploits (1)
References (1)
Scores
CVSS v3
7.5
EPSS
0.0030
EPSS Percentile
53.7%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Details
CWE
CWE-862
Status
published
Products (1)
scshr/hr_portal
< 7.3.2025.0408
Published
Jun 06, 2025
Tracked Since
Feb 18, 2026