Sign up for FREE to recieve instant alerts about this vulnerability!
Orca HCM from LEARNING DIGITAL has an Improper Authentication vulnerability, allowing unauthenticated remote attackers to log in to the system as any user.
CVE ID: CVE-2025-1387
CVSS Base Severity: CRITICAL
CVSS Base Score: 9.8
CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vendor: Learning Digital
Product: Orca HCM
EPSS Score: 0.09% (probability of being exploited)
EPSS Percentile: 0.41281 (how common is this exploit)
EPSS Date: 2025-03-12 (when was this score calculated)