VendorsEmployee Records System Projectemployee_records_systemall versions
Vulnerabilities

Employee Records System Project Employee Records System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2019-20183
uploadimage.php in Employee Records System 1.0 allows upload and execution of arbitrary PHP code because file-extension validation is only on the client side. The attacker can modify global.js to allow the .php extension.
Published 2020-01-09 · Modified
7.2EPSS 0.076