A missing authentication for critical function vulnerability in the client application of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to bypass authentication and access application functions.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://zuso.ai/advisory/za-2025-04 |
|
History
Fri, 06 Jun 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Jun 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing authentication for critical function vulnerability in the client application of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to bypass authentication and access application functions. | |
| Title | Soar Cloud HRD Human Resource Management System - Missing Authentication for Critical Function | |
| Weaknesses | CWE-306 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: ZUSO ART
Published: 2025-06-06T09:15:17.081Z
Updated: 2025-06-06T13:59:48.427Z
Reserved: 2025-05-26T06:22:57.842Z
Link: CVE-2025-5192
Updated: 2025-06-06T13:59:36.762Z
Status : Awaiting Analysis
Published: 2025-06-06T10:15:24.630
Modified: 2025-06-06T14:07:28.330
Link: CVE-2025-5192
No data.