A vulnerability has been found in code-projects Simple Leave Manager 1.0. Affected by this vulnerability is an unknown functionality of the file /request.php. Such manipulation of the argument staff_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Wed, 10 Dec 2025 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Carmelo
Carmelo simple Leave Manager |
|
| CPEs | cpe:2.3:a:carmelo:simple_leave_manager:1.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Carmelo
Carmelo simple Leave Manager |
Tue, 09 Dec 2025 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Code-projects
Code-projects simple Leave Manager |
|
| Vendors & Products |
Code-projects
Code-projects simple Leave Manager |
Mon, 08 Dec 2025 08:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in code-projects Simple Leave Manager 1.0. Affected by this vulnerability is an unknown functionality of the file /request.php. Such manipulation of the argument staff_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
| Title | code-projects Simple Leave Manager request.php sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-08T08:02:06.831Z
Updated: 2025-12-08T08:02:06.831Z
Reserved: 2025-12-07T15:33:10.940Z
Link: CVE-2025-14223
No data.
Status : Analyzed
Published: 2025-12-08T08:15:51.513
Modified: 2025-12-10T17:42:56.123
Link: CVE-2025-14223
No data.