Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-ff8c-r6cp-6m85

Опубликовано: 13 июн. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 6.3

Описание

A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been classified as critical. Affected is the function log_employee of the file /classes/Master.php?f=log_employee. The manipulation of the argument employee_code leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-268422 is the identifier assigned to this vulnerability.

A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been classified as critical. Affected is the function log_employee of the file /classes/Master.php?f=log_employee. The manipulation of the argument employee_code leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-268422 is the identifier assigned to this vulnerability.

EPSS

Процентиль: 23%
0.00074
Низкий

6.9 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.3
nvd
больше 1 года назад

A vulnerability was found in SourceCodester Employee and Visitor Gate Pass Logging System 1.0. It has been classified as critical. Affected is the function log_employee of the file /classes/Master.php?f=log_employee. The manipulation of the argument employee_code leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-268422 is the identifier assigned to this vulnerability.

EPSS

Процентиль: 23%
0.00074
Низкий

6.9 Medium

CVSS4

6.3 Medium

CVSS3

Дефекты

CWE-89