CVE-2024-13006: 1000 Projects Human Resource Management System employeeview.php sql injection
A vulnerability, which was classified as critical, has been found in 1000 Projects Human Resource Management System 1.0. This issue affects some unknown processing of the file /employeeview.php. The manipulation of the argument search leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13006?
CVE-2024-13006 is classified as a critical vulnerability.
How do I fix CVE-2024-13006?
To fix CVE-2024-13006, you should sanitize user inputs in the search argument of the /employeeview.php file to prevent SQL injection.
What type of vulnerability is CVE-2024-13006?
CVE-2024-13006 is a SQL injection vulnerability.
Which system is affected by CVE-2024-13006?
CVE-2024-13006 affects the 1000 Projects Human Resource Management System version 1.0.
What file is involved in CVE-2024-13006?
The vulnerability is related to the processing of the file /employeeview.php.