Show filters
20 Total Results
Displaying 1-10 of 20
Sort by:
Attacker Value
Unknown
CVE-2024-10422
Disclosure Date: October 27, 2024 (last updated October 29, 2024)
A vulnerability, which was classified as critical, has been found in SourceCodester Attendance and Payroll System 1.0. This issue affects some unknown processing of the file /admin/overtime_add.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2024-10421
Disclosure Date: October 27, 2024 (last updated October 29, 2024)
A vulnerability classified as critical was found in SourceCodester Attendance and Payroll System 1.0. This vulnerability affects unknown code of the file /admin/overtime_row.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2024-10420
Disclosure Date: October 27, 2024 (last updated October 29, 2024)
A vulnerability classified as critical has been found in SourceCodester Attendance and Payroll System 1.0. This affects the function upload of the file /marimar/guest/update.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2022-28020
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
0
Attacker Value
Unknown
CVE-2022-28019
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_edit.php.
0
Attacker Value
Unknown
CVE-2022-28018
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_edit.php.
0
Attacker Value
Unknown
CVE-2022-28017
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_edit.php.
0
Attacker Value
Unknown
CVE-2022-28016
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\deduction_edit.php.
0
Attacker Value
Unknown
CVE-2022-28015
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_edit.php.
0
Attacker Value
Unknown
CVE-2022-28014
Disclosure Date: April 21, 2022 (last updated February 23, 2025)
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_edit.php.
0