Vulnerabilities
Vulnerable Software
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_edit.php.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-21
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_edit.php.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-21
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_edit.php.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-21
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-21
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_delete.php.
CVSS Score
8.8
EPSS Score
0.004
Published
2022-04-21
A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously crafted PHP via photo upload.
CVSS Score
9.8
EPSS Score
0.215
Published
2022-03-17
An SQL Injection vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows a remote attacker to bypass authentication via unsanitized login parameters.
CVSS Score
9.8
EPSS Score
0.017
Published
2022-03-17


Contact Us

Shodan ® - All rights reserved