Home
CRITICAL: 9.9 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:HDefault status
affected
Any version
affected
Description
An unrestricted upload of file with dangerous type vulnerability in the upload file function of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to execute arbitrary system commands via a malicious file.
Problem types
CWE-434 Unrestricted Upload of File with Dangerous Type
Product status
Any version
References
zuso.ai/advisory/za-2025-07