6.9
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was found in code-projects Human Resource Integrated System 1.0. This affects an unknown part of the file /log_query.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit has been made public and could be used.
Basic Information
ID
CVE-2025-9740
Source
VulDB
Published
Aug 31, 2025 at 18:02
Affected Product
Vendor
code-projects
Product
Human Resource Integrated System
Version
1.0
Affected Versions
code-projects Human Resource Integrated System 1.0