5 results (0.016 seconds)

CVSS: 6.3EPSS: 0%CPEs: 1EXPL: 1

A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the function login of the file main. The manipulation leads to buffer overflow. The exploit has been disclosed to the public and may be used. Es wurde eine Schwachstelle in SourceCodester Payroll Management System 1.0 entdeckt. • https://github.com/CveSecLook/cve/issues/63 https://vuldb.com/?ctiid.281763 https://vuldb.com/?id.281763 https://vuldb.com/?submit.430175 https://www.sourcecodester.com • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability, which was classified as critical, has been found in itsourcecode Payroll Management System 1.0. This issue affects some unknown processing of the file /ajax.php?action=delete_deductions. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. • https://github.com/ppp-src/ha/issues/8 https://itsourcecode.com https://vuldb.com/?ctiid.276797 https://vuldb.com/?id.276797 https://vuldb.com/?submit.403998 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability classified as critical was found in itsourcecode Payroll Management System 1.0. Affected by this vulnerability is an unknown functionality of the file login.php. The manipulation of the argument username leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/ppp-src/ha/issues/6 https://itsourcecode.com https://vuldb.com/?ctiid.275563 https://vuldb.com/?id.275563 https://vuldb.com/?submit.396110 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability was found in itsourcecode Payroll Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file print_payroll.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/guiyxli/cve/issues/1 https://vuldb.com/?ctiid.268142 https://vuldb.com/?id.268142 https://vuldb.com/?submit.354926 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 1

Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter. Se ha detectado que Payroll Management System versión v1.0, contiene una vulnerabilidad de inyección SQL por medio del parámetro username • https://github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/oretnom23/2022/Payroll-Management-System • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •