Vulnerabilities > Online Project Time Management System Project > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-03-16 CVE-2022-26293 SQL Injection vulnerability in Online Project Time Management System Project Online Project Time Management System 1.0
Online Project Time Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the function save_employee at /ptms/classes/Users.php.
network
low complexity
online-project-time-management-system-project CWE-89
critical
9.8
2022-01-24 CVE-2021-46451 SQL Injection vulnerability in Online Project Time Management System Project Online Project Time Management System 1.0
An SQL Injection vulnerabilty exists in Sourcecodester Online Project Time Management System 1.0 via the pid parameter in the load_file function.
network
low complexity
online-project-time-management-system-project CWE-89
critical
9.8