Filtered by vendor Sourcecodester Subscriptions
Filtered by product Employee Management System Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-25239 1 Sourcecodester 1 Employee Management System 2024-11-21 9.8 Critical
SQL Injection vulnerability in Sourcecodester Employee Management System v1.0 allows attackers to run arbitrary SQL commands via crafted POST request to /emloyee_akpoly/Account/login.php.
CVE-2024-9083 2 Razormist, Sourcecodester 2 Employee Management System, Employee Management System 2024-09-27 2.4 Low
A vulnerability classified as problematic has been found in SourceCodester Employee Management System 1.0. This affects an unknown part of the file /Admin/add-admin.php. The manipulation of the argument txtfullname leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.