Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Suhas Surse WP Employee Attendance System allows Blind SQL Injection. This issue affects WP Employee Attendance System: from n/a through 3.5.
Metrics
Affected Vendors & Products
References
History
Tue, 17 Jun 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 17 Jun 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Suhas Surse WP Employee Attendance System allows Blind SQL Injection. This issue affects WP Employee Attendance System: from n/a through 3.5. | |
Title | WordPress WP Employee Attendance System <= 3.5 - SQL Injection Vulnerability | |
Weaknesses | CWE-89 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Patchstack
Published: 2025-06-17T15:01:40.024Z
Updated: 2025-06-17T17:37:15.457Z
Reserved: 2025-03-11T08:10:27.474Z
Link: CVE-2025-28972

Updated: 2025-06-17T17:37:07.447Z

Status : Awaiting Analysis
Published: 2025-06-17T15:15:41.077
Modified: 2025-06-17T20:50:23.507
Link: CVE-2025-28972

No data.