CVE-2025-9741: code-projects Human Resource Integrated System login_query12.php sql injection
A vulnerability was determined in code-projects Human Resource Integrated System 1.0. This vulnerability affects unknown code of the file /loginquery12.php. This manipulation of the argument ID causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9741?
CVE-2025-9741 has a high severity rating due to its potential for remote SQL injection attacks.
How do I fix CVE-2025-9741?
To fix CVE-2025-9741, ensure proper input validation and parameterized queries in the /login_query12.php file to prevent SQL injection.
Which software is affected by CVE-2025-9741?
CVE-2025-9741 affects the Code-projects Human Resource Integrated System version 1.0.
Can CVE-2025-9741 be exploited remotely?
Yes, CVE-2025-9741 can be exploited remotely, allowing attackers to perform SQL injection attacks from external locations.
What type of vulnerability is CVE-2025-9741?
CVE-2025-9741 is categorized as an SQL injection vulnerability.