Impact
The vulnerability is a lack of authentication in the /role-permission/permission endpoint of Omega Solution HRM OS. By manipulating the roleId argument, an attacker can bypass authentication checks and access privileged functionality. The flaw is an instance of missing authentication, corresponding to CWE-287 and CWE-306, and is exploitable remotely, with public exploit code circulating on the internet. The exploitation enables the attacker to elevate privileges or access sensitive information without legitimate credentials, compromising the confidentiality and integrity of the HRM system.
Affected Systems
Omega Solution HRM OS versions up to 20260717 are affected. The flaw resides in an unidentified function within the Role Permission API component. Users running any release of the product before or including the 20260717 snapshot are potentially impacted, and the vendor has not yet issued a fix or response.
Risk and Exploitability
The CVSS score of 6.9 indicates medium severity. EPSS is not available, so it is unclear how frequently the exploit is used in the wild, but the vulnerability is listed on public exploit repositories and known to be remotely exploitable. The absence of a CISA KEV listing does not reduce the risk; the public availability of an exploit makes the vulnerability likely to be targeted. Attackers can launch the exploit remotely by sending crafted requests to /role-permission/permission with modified roleId values, and the lack of authentication guarantees successful execution without credential theft.
OpenCVE Enrichment