CVE-2021-42169
PoC ×2—CVSS 3.1
9.8 critical
EPSS
3%p86
Published
()
Modified
Description
The Simple Payroll System with Dynamic Tax Bracket in PHP using SQLite Free Source Code (by: oretnom23 ) is vulnerable from remote SQL-Injection-Bypass-Authentication for the admin account. The parameter (username) from the login form is not protected correctly and there is no security and escaping from malicious payloads.
- Vendors
- simple payroll system with dynamic tax bracket project
- Products
- simple payroll system with dynamic tax bracket
- Weakness
- CWE-89
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.