First published: Thu Apr 03 2025(Updated: )
A vulnerability classified as critical has been found in code-projects Payroll Management System 1.0. This affects an unknown part of the file /add_overtime.php. The manipulation of the argument rate leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Payroll Management System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3134 is classified as a critical severity vulnerability due to the potential for SQL injection and remote exploitation.
CVE-2025-3134 affects the Payroll Management System version 1.0, specifically through the /add_overtime.php file.
CVE-2025-3134 is a SQL injection vulnerability that can be exploited by manipulating the 'rate' argument.
Yes, CVE-2025-3134 can be exploited remotely, allowing an attacker to compromise the system from outside the network.
Exploiting CVE-2025-3134 could lead to data theft, unauthorized database access, and potential compromise of the entire Payroll Management System.