CVE-2023-44480
EUVD-2023-4881727.10.2023, 21:15
Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setcasualleave' parameter of the admin/setleaves.php resource does not validate the characters received and they are sent unfiltered to the database.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| projectworlds | leave_management_system | 1.0 |
𝑥
= Vulnerable software versions