PT-2026-35397 · Code Projects · Employee Management System

Ssl_Seven_Security_Lab_Wangzhiqiang_Zhanxiuchen

·

Published

2026-04-27

·

Updated

2026-04-27

·

CVE-2026-7115

CVSS v2.0

6.5

Medium

AV:N/AC:L/Au:S/C:P/I:P/A:P
A vulnerability was identified in code-projects Employee Management System 1.0. This vulnerability affects unknown code of the file 370project/delete.php. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-7115

Affected Products

Employee Management System