CVE-2024-5995
EUVD-2024-4711114.06.2024, 08:15
The notification emails sent by Soar Cloud HR Portal contain a link with a embedded session. The expiration of the session is not properly configured, remaining valid for more than 7 days and can be reused.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| scshr | hr_portal | 𝑥 < 7.3.2024.0409 | ADP |
Common Weakness Enumeration