PT-2026-43035 · Code Projects · Employee Management System
Ssl_Seven_Security_Lab_Wangzhiqiang_Zhanxiuchen
·
Published
2026-05-25
·
Updated
2026-05-25
·
CVE-2026-9448
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N |
A vulnerability was determined in code-projects Employee Management System 1.0. This affects an unknown function of the file /applyleave.php. Executing a manipulation of the argument ID can lead to cross site scripting. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.
Exploit
XSS
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Employee Management System