CVE-2025-40682
EUVD-2025-2299429.07.2025, 13:15
SQL injection vulnerability in Human Resource Management System version 1.0, which allows an attacker to retrieve, create, update and delete databases via the “city” and “state” parameters in the /controller/ccity.php endpoint.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| oretnom23 | human_resource_management_system | 1.0 |
𝑥
= Vulnerable software versions