Back to Database
Status published
Critical
CVE-2025-48782
Soar Cloud HRD Human Resource Management System - Unrestricted Upload of File with Dangerous Type
Vulnerability Description
An unrestricted upload of file with dangerous type vulnerability in the upload file function of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to execute arbitrary system commands via a malicious file.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-48782
Credits & Attribution
No credits recorded in the NVD database.
References
More from Soar Cloud System CO., LTD.
View All →CVE-2025-5192
Soar Cloud HRD Human Resource Management System - Missing Authentication for Critical Function
Critical
9.3
CVE-2025-48784
Soar Cloud HRD Human Resource Management System - Missing Authorization
High
8.8
CVE-2025-48783
Soar Cloud HRD Human Resource Management System - External Control of File Name or Path
High
8.8
CVE-2025-48781
Soar Cloud HRD Human Resource Management System - External Control of File Name or Path
High
8.7
CVE-2025-48780
Soar Cloud HRD Human Resource Management System - Deserialization of Untrusted Data
Critical
9.9
Affected Vendor
Soar Cloud System CO., LTD.
View all reports →Affected Software
HRD Human Resource Management System
Vulnerable Versions:
0
Timeline
Official Publish:
June 6th, 2025
Last Modified:
June 6th, 2025
Added to House:
July 22nd, 2026