VYPR

Payroll Management System

by Sourcecodester

CVEs (2)

  • CVE-2024-34833CriJun 17, 2024
    risk 0.64cvss 9.8epss 0.02

    Sourcecodester Payroll Management System v1.0 is vulnerable to File Upload. Users can upload images via the "save_settings" page. An unauthenticated attacker can leverage this functionality to upload a malicious PHP file instead. Successful exploitation of this vulnerability…

  • CVE-2024-10371MedOct 25, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical has been found in SourceCodester Payroll Management System 1.0. This affects the function login of the file main. The manipulation leads to buffer overflow. The exploit has been disclosed to the public and may be used.