Vulnerabilities (CVE)

Filtered by vendor Attendance And Payroll System Project Subscribe
Total 17 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28015 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_edit.php.
CVE-2022-28018 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_edit.php.
CVE-2022-28013 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_employee_edit.php.
CVE-2022-28014 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_edit.php.
CVE-2022-28017 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_edit.php.
CVE-2022-28012 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_delete.php.
CVE-2021-44088 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 7.5 HIGH 9.8 CRITICAL
An SQL Injection vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows a remote attacker to bypass authentication via unsanitized login parameters.
CVE-2022-28007 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_delete.php.
CVE-2022-28020 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
CVE-2022-28011 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_delete.php.
CVE-2022-28010 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_delete.php.
CVE-2021-44087 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 7.5 HIGH 9.8 CRITICAL
A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously crafted PHP via photo upload.
CVE-2022-28019 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_edit.php.
CVE-2022-28009 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_delete.php.
CVE-2022-28016 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\deduction_edit.php.
CVE-2022-28008 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_delete.php.
CVE-2022-28006 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2024-02-28 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_delete.php.