CVE-2025-1607: SourceCodester Best Employee Management System salary_slip.php authorization
A vulnerability, which was classified as problematic, has been found in SourceCodester Best Employee Management System 1.0. This issue affects some unknown processing of the file /admin/salaryslip.php. The manipulation of the argument id leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1607?
CVE-2025-1607 is classified as problematic due to its potential for authorization bypass.
How do I fix CVE-2025-1607?
To fix CVE-2025-1607, ensure that appropriate authorization checks are implemented on the /admin/salary_slip.php file.
What systems are affected by CVE-2025-1607?
CVE-2025-1607 affects SourceCodester Best Employee Management System version 1.0.
What type of vulnerability is CVE-2025-1607?
CVE-2025-1607 is an authorization bypass vulnerability.
What could be the impact of exploiting CVE-2025-1607?
Exploiting CVE-2025-1607 could allow unauthorized users to access sensitive information within the system.