CyberRota Yorumu
SQL Injection riski içeriyor. Uzaktan istismar edilebilir olabilir.
CVE
CVE-2026-11509
Severity
MEDIUM
CVSS
6.3
EPSS
%0.19
Orijinal NVD Açıklaması
A vulnerability was identified in CodeAstro Leave Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/search_staff_for_updation.php. Such manipulation of the argument Name leads to sql injection. The attack may be performed from remote.