First published: Sat Feb 18 2023(Updated: )
A vulnerability was found in SourceCodester Employee Task Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file task-details.php. The manipulation of the argument task_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-221453 was assigned to this vulnerability.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Employee Daily Task Management System | =1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0904 has been rated as critical due to the potential for SQL injection vulnerabilities.
CVE-2023-0904 affects the file task-details.php within the Employee Task Management System version 1.0.
CVE-2023-0904 is a SQL injection vulnerability that occurs when manipulating the task_id parameter.
Any users or administrators of the Employee Task Management System version 1.0 are impacted by CVE-2023-0904.
To mitigate CVE-2023-0904, users should update to a patched version of the Employee Task Management System or validate and sanitize the input parameters in the application.