Exploitation Summary
EIP tracks 1 public exploit for CVE-2025-48784. PoCs published by h3raklez.
AI-analyzed exploit summary This repository provides a detailed technical analysis and lab setup for CVE-2025-48734, an information leak in Apache Commons BeanUtils that can be chained with unsafe deserialization to achieve RCE. It includes a comprehensive breakdown of the vulnerability, exploit chain, and mitigation steps.
Description
A missing authorization vulnerability in Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to modify system settings without prior authorization.
Exploits (1)
This repository provides a detailed technical analysis and lab setup for CVE-2025-48734, an information leak in Apache Commons BeanUtils that can be chained with unsafe deserialization to achieve RCE. It includes a comprehensive breakdown of the vulnerability, exploit chain, and mitigation steps.
References (1)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N