PT-2026-47440 · Codeastro · Payroll System

Schneidergrace

·

Published

2026-06-08

·

Updated

2026-06-08

·

CVE-2026-11559

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
A vulnerability was detected in CodeAstro Payroll System 1.0. This affects an unknown function of the file /view account.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit is now public and may be used.

Exploit

Fix

SQL injection

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2026-11559

Affected Products

Payroll System