CVE-2025-48784: Scshr Hr Portal

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A missing authorization vulnerability in Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to modify system settings without prior authorization.

Affected products

  • Scshr Hr Portal: up to and including 7.3.2025.0408

Published 2025-06-06. Last modified 2026-06-17.