The Simple Payroll System with Dynamic Tax Bracket in PHP using SQLite Free Source Code (by: oretnom23 ) is vulnerable from remote SQL-Injection-Bypass-Authentication for the admin account. The parameter (username) from the login form is not protected correctly and there is no security and escaping from malicious payloads.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-10-22T13:09:52
Updated: 2024-08-04T03:30:37.831Z
Reserved: 2021-10-11T00:00:00
Link: CVE-2021-42169
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-10-22T14:15:08.643
Modified: 2024-11-21T06:27:22.150
Link: CVE-2021-42169
Redhat
No data.