Soar Cloud HRD Human Resource Management System External Control of File Name or Path Vulnerability

Vulnerability

A vulnerability allowing external control of file names or paths has been identified in the delete file function of Soar Cloud HRD Human Resource Management System, affecting versions through 7.3.2025.0408. This vulnerability allows remote attackers to delete partial files by specifying arbitrary file paths.

Impact

Exploitation of this vulnerability could lead to unauthorized deletion of files, potentially causing data loss or disruption of service.

Added: Jun 6, 2025, 10:20 AM
Updated: Jun 6, 2025, 10:20 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
7.4
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.