Unknown · Employee Record Management System · CVE-2025-45065
Name of the Vulnerable Software and Affected Versions:
Employee Record Management System in PHP and MySQL version 1
Description:
A SQL injection issue was found in the system via the "loginerms.php" endpoint. This allows for potential exploitation by injecting malicious SQL code.
Recommendations:
For Employee Record Management System in PHP and MySQL version 1, consider disabling access to the "loginerms.php" endpoint until a proper fix is applied to prevent SQL injection attacks. Restrict input validation to minimize the risk of exploitation.