Critical severity9.8NVD Advisory· Published Jan 21, 2022· Updated Jun 17, 2026
CVE-2021-40595
CVE-2021-40595
Description
SQL injection vulnerability in Sourcecodester Online Leave Management System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username parameter to /leave_system/classes/Login.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:online_leave_management_system_project:online_leave_management_system:1.0:*:*:*:*:*:*:*
- Range: v1
Patches
Vulnerability mechanics
References
2- github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/oretnom23/CVE-nu11-03nvdExploitThird Party Advisory
- www.sourcecodester.com/php/14910/online-leave-management-system-php-free-source-code.htmlnvdProductVendor Advisory
News mentions
0No linked articles in our index yet.