Security Advisory

CVE-2021-42169

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-22 13:09:52
Last updated 2024-08-04 03:30:37
Assigner mitre
State PUBLISHED

Description

The Simple Payroll System with Dynamic Tax Bracket in PHP using SQLite Free Source Code (by: oretnom23 ) is vulnerable from remote SQL-Injection-Bypass-Authentication for the admin account. The parameter (username) from the login form is not protected correctly and there is no security and escaping from malicious payloads.