CVE-2025-40682
SQL injection vulnerability in Human Resource Management System version 1.0, which allows an attacker to retrieve, create, update and delete databases via the “city” and “state” parameters in the /controller/ccity.php endpoint.
Vendor
Product
CWE
Yayın Tarihi
2025-07-29 13:15:26
Güncelleme
2025-08-04 20:59:01
Source Identifier
cve-coordination@incibe.es
KEV Date Added
-