VendorsWalterjnr1employee_management_systemall versions
Vulnerabilities

Walterjnr1 Employee Management System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2024-28595
SQL Injection vulnerability in Employee Management System v1.0 allows attackers to run arbitrary SQL commands via the admin_id parameter in update-admin.php.
Published 2024-03-19 · Analyzed
9.81 PoCEPSS 0.012
CVE-2024-1833
SourceCodester Employee Management System login.php sql injection
Published 2024-02-23 · Analyzed
9.8EPSS 0.009
CVE-2024-25239
SQL Injection vulnerability in Sourcecodester Employee Management System v1.0 allows attackers to run arbitrary SQL commands via crafted POST request to /emloyee_akpoly/Account/login.php.
Published 2024-02-29 · Analyzed
9.8EPSS 0.008
CVE-2024-2394
SourceCodester Employee Management System add-admin.php unrestricted upload
Published 2024-03-12 · Analyzed
9.8EPSS 0.006
CVE-2024-25325
SQL injection vulnerability in Employee Management System v.1.0 allows a local attacker to obtain sensitive information via a crafted payload to the txtemail parameter in the login.php.
Published 2024-03-12 · Analyzed
7.1EPSS 0.003