Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-13420 2 Angeljudesuarez, Itsourcecode 2 Human Resource Management System, Human Resource Management System 2025-11-24 7.3 High
A weakness has been identified in itsourcecode Human Resource Management System 1.0. This issue affects some unknown processing of the file /src/store/EventStore.php. This manipulation of the argument eventSubject causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.
CVE-2025-13421 2 Angeljudesuarez, Itsourcecode 2 Human Resource Management System, Human Resource Management System 2025-11-24 7.3 High
A security vulnerability has been detected in itsourcecode Human Resource Management System 1.0. Impacted is an unknown function of the file /src/store/NoticeStore.php. Such manipulation of the argument noticeDesc leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.