CVE-2022-43262: SQL Injection
Published Nov 16, 2022
·Updated
Human Resource Management System v1.0 was discovered to contain a SQL injection vulnerability via the password parameter at /hrm/controller/login.php.
Affected Software
2 affected components
Human Resource Management System Project Human Resource Management System=1.0
oretnom23 Human Resource Management System=1.0
Event History
Nov 16, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this SQL injection vulnerability?
The vulnerability ID is CVE-2022-43262.
2
What is the severity rating of CVE-2022-43262?
The severity rating of CVE-2022-43262 is critical (9.8).
3
How does the SQL injection vulnerability in Human Resource Management System v1.0 occur?
The SQL injection vulnerability in Human Resource Management System v1.0 occurs through the password parameter at /hrm/controller/login.php.
4
What software version is affected by CVE-2022-43262?
Version 1.0 of Human Resource Management System is affected by CVE-2022-43262.
5
Is there a fix available for this vulnerability?
To fix the SQL injection vulnerability, it is recommended to apply the latest security patches provided by the vendor.