Vulnerabilities > Online Leave Management System Project

DATE CVE VULNERABILITY TITLE RISK
2022-09-12 CVE-2022-38304 SQL Injection vulnerability in Online Leave Management System Project Online Leave Management System 1.0
Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /maintenance/manage_leave_type.php.
7.2
2022-01-21 CVE-2021-40595 SQL Injection vulnerability in Online Leave Management System Project Online Leave Management System 1.0
SQL injection vulnerability in Sourcecodester Online Leave Management System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username parameter to /leave_system/classes/Login.php.
network
low complexity
online-leave-management-system-project CWE-89
critical
9.8