CVE-2022-38303 Information

Description

Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /employees/manage_leave_type.php.

Reference

https://github.com/GGMMNN/bug_report/blob/main/vendors/oretnom23/online-leave-management-system/SQLi-2.md

Share on: