Vulnerabilities (CVE)

Filtered by vendor Angeljudesuarez Subscribe
Filtered by product Human Resource Management System
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-13420 1 Angeljudesuarez 1 Human Resource Management System 2025-11-24 7.5 HIGH 7.3 HIGH
A weakness has been identified in itsourcecode Human Resource Management System 1.0. This issue affects some unknown processing of the file /src/store/EventStore.php. This manipulation of the argument eventSubject causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited.
CVE-2025-13421 1 Angeljudesuarez 1 Human Resource Management System 2025-11-21 7.5 HIGH 7.3 HIGH
A security vulnerability has been detected in itsourcecode Human Resource Management System 1.0. Impacted is an unknown function of the file /src/store/NoticeStore.php. Such manipulation of the argument noticeDesc leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.