CVE-2025-40682
29.07.2025, 13:15
SQL injection vulnerability in Human Resource Management System version 1.0, which allows an attacker to retrieve, create, update and delete databases via the city and state parameters in the /controller/ccity.php endpoint.
Awaiting analysis
This vulnerability is currently awaiting analysis.