cve/2021/CVE-2021-42169.md
2024-05-25 21:48:12 +02:00

1.0 KiB

CVE-2021-42169

Description

The Simple Payroll System with Dynamic Tax Bracket in PHP using SQLite Free Source Code (by: oretnom23 ) is vulnerable from remote SQL-Injection-Bypass-Authentication for the admin account. The parameter (username) from the login form is not protected correctly and there is no security and escaping from malicious payloads.

POC

Reference

Github