Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2024-10371

Disclosure Date: October 25, 2024 (last updated October 31, 2024)
A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the function login of the file main. The manipulation leads to buffer overflow. The exploit has been disclosed to the public and may be used.
Attacker Value
Unknown

CVE-2024-8567

Disclosure Date: September 08, 2024 (last updated September 11, 2024)
A vulnerability, which was classified as critical, has been found in itsourcecode Payroll Management System 1.0. This issue affects some unknown processing of the file /ajax.php?action=delete_deductions. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Attacker Value
Unknown

CVE-2024-8081

Disclosure Date: August 22, 2024 (last updated August 28, 2024)
A vulnerability classified as critical was found in itsourcecode Payroll Management System 1.0. Affected by this vulnerability is an unknown functionality of the file login.php. The manipulation of the argument username leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Attacker Value
Unknown

CVE-2024-37873

Disclosure Date: July 09, 2024 (last updated August 03, 2024)
SQL injection vulnerability in view_payslip.php in Itsourcecode Payroll Management System Project In PHP With Source Code 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Attacker Value
Unknown

CVE-2024-37831

Disclosure Date: June 14, 2024 (last updated August 02, 2024)
Itsourcecode Payroll Management System 1.0 is vulnerable to SQL Injection in payroll_items.php via the ID parameter.
Attacker Value
Unknown

CVE-2024-5898

Disclosure Date: June 12, 2024 (last updated August 24, 2024)
A vulnerability was found in itsourcecode Payroll Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file print_payroll.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-268142 is the identifier assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-23022

Disclosure Date: May 01, 2024 (last updated February 23, 2025)
Cross site scripting (XSS) vulnerability in sourcecodester oretnom23 employee's payroll management system 1.0, allows attackers to execute arbitrary code via the code, title, from_date and to_date inputs in file Main.php.
Attacker Value
Unknown

CVE-2022-28468

Disclosure Date: April 05, 2022 (last updated October 07, 2023)
Payroll Management System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter.