CyberRota Analysis
AI-GeneratedA SQL injection vulnerability exists in the /login.php file of the itsourcecode Leave Management System 1.0, allowing remote attackers to manipulate the user_email argument. This could lead to unauthorized access to the database, potentially exposing sensitive information or compromising the system. Organizations using this application should prioritize patching this vulnerability to mitigate the risk of exploitation.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A weakness has been identified in itsourcecode Leave Management System 1.0. Affected by this issue is some unknown functionality of the file /login.php. Executing a manipulation of the argument user_email can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be used for attacks.