SQL injection vulnerability in Employee Management System v.1.0 allows a local attacker to obtain sensitive information via a crafted payload to the txtemail parameter in the login.php.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://cxsecurity.com/issue/WLB-2024020062 |
History
Thu, 31 Oct 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-89 | |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2024-03-12T00:00:00
Updated: 2024-10-31T17:22:30.066Z
Reserved: 2024-02-07T00:00:00
Link: CVE-2024-25325
Vulnrichment
Updated: 2024-08-01T23:44:08.482Z
NVD
Status : Awaiting Analysis
Published: 2024-03-12T08:15:45.370
Modified: 2024-10-31T18:35:07.527
Link: CVE-2024-25325
Redhat
No data.