First published: Fri Oct 28 2022(Updated: )
Employee Record Management System v 1.2 is vulnerable to SQL Injection via editempprofile.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGURUKUL Employee Record Management System | =1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-37782 is critical.
CVE-2021-37782 vulnerability occurs in the Employee Record Management System v1.2 due to an SQL Injection vulnerability in the editempprofile.php file.
If you are using Employee Record Management System v1.2, you may be affected by CVE-2021-37782.
The CWE ID for CVE-2021-37782 is CWE-89.
To mitigate the vulnerability in CVE-2021-37782, you should apply the latest security patch provided by the developer of the Employee Record Management System or upgrade to a newer version.