Security Advisory

CVE-2023-44480

8.8
HIGH

Vulnerability Description

Leave Management System Project v1.0 is vulnerable to multiple Authenticated SQL Injection vulnerabilities. The 'setcasualleave' parameter of the admin/setleaves.php resource does not validate the characters received and they are sent unfiltered to the database.
Published Date October 27, 2023
Official Source NIST NVD Advisory