CVE-2024-13006

Severity CVSS v4.0:
MEDIUM
Type:
CWE-74 Injection
Publication date:
29/12/2024
Last modified:
29/12/2024

Description

A vulnerability, which was classified as critical, has been found in 1000 Projects Human Resource Management System 1.0. This issue affects some unknown processing of the file /employeeview.php. The manipulation of the argument search leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.