← Back to CVE search

CVE-2026-11506

CodeAstro Leave Management System

Description

A vulnerability has been found in CodeAstro Leave Management System 1.0. This impacts an unknown function of the file /admin/search_staff_for_deletion.php. The manipulation of the argument Name leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

CVSS 6.3EPSS 0.2%Risk 0.64
View source
Published
2026-06-08 12:16:30
Affected versions
==1.0
Type
Installed app
Last modified
2026-07-23 07:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L