Vulnerabilities (CVE)

Filtered by vendor Code-projects Subscribe
Filtered by product Employee Profile Management System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-0466 1 Code-projects 1 Employee Profile Management System 2024-04-11 5.2 MEDIUM 9.8 CRITICAL
A vulnerability, which was classified as critical, has been found in code-projects Employee Profile Management System 1.0. This issue affects some unknown processing of the file file_table.php. The manipulation of the argument per_id leads to sql injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250571.
CVE-2024-0465 1 Code-projects 1 Employee Profile Management System 2024-04-11 2.7 LOW 5.3 MEDIUM
A vulnerability classified as problematic was found in code-projects Employee Profile Management System 1.0. This vulnerability affects unknown code of the file download.php. The manipulation of the argument download_file leads to path traversal: '../filedir'. The exploit has been disclosed to the public and may be used. VDB-250570 is the identifier assigned to this vulnerability.