CVE-2024-25239 Information

Description

SQL Injection vulnerability in Sourcecodester Employee Management System v1.0 allows attackers to run arbitrary SQL commands via crafted POST request to /emloyee_akpoly/Account/login.php.

Reference

https://blu3ming.github.io/sourcecodester-employee-management-system-sql-injection/

Share on: