Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Attendance And Payroll System Project Subscribe
Filtered by product Attendance And Payroll System
Total 17 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28020 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
CVE-2022-28019 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_edit.php.
CVE-2022-28018 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_edit.php.
CVE-2022-28015 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_edit.php.
CVE-2022-28017 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_edit.php.
CVE-2022-28016 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\deduction_edit.php.
CVE-2022-28013 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_employee_edit.php.
CVE-2022-28014 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_edit.php.
CVE-2022-28012 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_delete.php.
CVE-2022-28011 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\schedule_delete.php.
CVE-2022-28010 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\overtime_delete.php.
CVE-2022-28009 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_delete.php.
CVE-2022-28008 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\attendance_delete.php.
CVE-2022-28007 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_delete.php.
CVE-2022-28006 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-04-22 6.5 MEDIUM 8.8 HIGH
Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\employee_delete.php.
CVE-2021-44087 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-03-24 7.5 HIGH 9.8 CRITICAL
A Remote Code Execution (RCE) vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows an unauthenticated remote attacker to upload a maliciously crafted PHP via photo upload.
CVE-2021-44088 1 Attendance And Payroll System Project 1 Attendance And Payroll System 2022-03-24 7.5 HIGH 9.8 CRITICAL
An SQL Injection vulnerability exists in Sourcecodester Attendance and Payroll System v1.0 which allows a remote attacker to bypass authentication via unsanitized login parameters.