CVE-2025-28972
17.06.2025, 15:15
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Suhas Surse WP Employee Attendance System allows Blind SQL Injection. This issue affects WP Employee Attendance System: from n/a through 3.5.
Awaiting analysis
This vulnerability is currently awaiting analysis.