Known Vulnerabilities for products from Online Leave Management System Project
Listed below are 12 of the newest known vulnerabilities associated with the vendor "Online Leave Management System Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-45009 json | Online Leave Management System v1.0 was discovered to contain an arbitrary file upload vulnerability at /leave_system/classes... | 7.2 - HIGH | 2022-12-07 | 2022-12-08 |
| CVE-2022-45008 json | Online Leave Management System v1.0 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the compon... | 4.8 - MEDIUM | 2022-12-07 | 2022-12-08 |
| CVE-2022-43179 json | Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the component /admin/?page=us... | 7.2 - HIGH | 2022-11-17 | 2022-11-18 |
| CVE-2022-41379 json | An arbitrary file upload vulnerability in the component /leave_system/classes/Users.php?f=save of Online Leave Management Sys... | 7.2 - HIGH | 2022-10-07 | 2022-10-11 |
| CVE-2022-41355 json | Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /leave_sy... | 7.2 - HIGH | 2022-10-06 | 2022-10-07 |
| CVE-2022-40928 json | Online Leave Management System v1.0 is vulnerable to SQL Injection via /leave_system/classes/Master.php?f=delete_application. | 7.2 - HIGH | 2022-09-26 | 2022-09-27 |
| CVE-2022-40927 json | Online Leave Management System v1.0 is vulnerable to SQL Injection via /leave_system/classes/Master.php?f=delete_designation. | 7.2 - HIGH | 2022-09-26 | 2022-09-27 |
| CVE-2022-40926 json | Online Leave Management System v1.0 is vulnerable to SQL Injection via /leave_system/classes/Master.php?f=delete_leave_type. | 7.2 - HIGH | 2022-09-26 | 2022-09-27 |
| CVE-2022-38304 json | Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /maintena... | 7.2 - HIGH | 2022-09-12 | 2022-09-15 |
| CVE-2022-38303 json | Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /employee... | 7.2 - HIGH | 2022-09-12 | 2022-09-15 |
| CVE-2022-38302 json | Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /maintena... | 7.2 - HIGH | 2022-09-12 | 2022-09-15 |
| CVE-2021-40595 json | SQL injection vulnerability in Sourcecodester Online Leave Management System v1 by oretnom23, allows attackers to execute arb... | 9.8 - CRITICAL | 2022-01-21 | 2022-01-26 |