First published: Mon Dec 13 2021(Updated: )
Directory traversal vulnerability in /admin/includes/* directory for PHPGURUKUL Employee Record Management System 1.2 The attacker can retrieve and download sensitive information from the vulnerable server.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PHPGURUKUL Employee Record Management System | =1.2 | |
=1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-44965 is a directory traversal vulnerability in the /admin/includes/* directory for PHPGURUKUL Employee Record Management System 1.2, which allows an attacker to retrieve and download sensitive information from the vulnerable server.
CVE-2021-44965 has a severity value of 7.5, indicating a high severity. It allows an attacker to perform directory traversal and access sensitive files on the server.
If you are using PHPGURUKUL Employee Record Management System 1.2, your system may be vulnerable to CVE-2021-44965. It is recommended to apply the necessary patches or updates provided by the vendor.
Yes, there is a fix available for CVE-2021-44965. It is recommended to update to a patched version or apply the necessary fixes provided by the vendor.
You can find more information about CVE-2021-44965 on the GitHub page: [link](https://github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/PHPGURUKUL/ANUJ%20KUMAR/Employee-Record-Management-System)