CVE-2026-10624
Severity CVSS v4.0:
LOW
Type:
Unavailable / Other
Publication date:
02/06/2026
Last modified:
02/06/2026
Description
A vulnerability has been found in SourceCodester Human Resource Management 1.0. Affected by this vulnerability is an unknown functionality of the file /detailview.php of the component Employee View Page. Such manipulation of the argument employeeid leads to improper control of resource identifiers. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
Impact
Base Score 4.0
2.10
Severity 4.0
LOW
Base Score 3.x
4.30
Severity 3.x
MEDIUM
Base Score 2.0
4.00
Severity 2.0
MEDIUM
References to Advisories, Solutions, and Tools
- https://r4sh7n.medium.com/insecure-direct-object-reference-idor-vulnerability-in-employee-management-functionality-70df8ac5b1d3?postPublishedType=repub
- https://vuldb.com/cve/CVE-2026-10624
- https://vuldb.com/submit/829766
- https://vuldb.com/vuln/367929
- https://vuldb.com/vuln/367929/cti
- https://www.sourcecodester.com/



