Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Employee Management System — Vulnerabilities & Security Advisories 53

All 53 CVE vulnerabilities found in Employee Management System, with AI-generated Chinese analysis, references, and POCs.

This page presents a curated aggregation of security vulnerabilities affecting the Employee Management System, focusing on common weakness types and associated tags. It compiles reported issues ranging from critical remote code execution flaws to minor information disclosure weaknesses, covering vulnerability announcements and advisories released between January 2020 and December 2023. This resource allows security professionals and system administrators to track a vendor’s historical advisory patterns, understand the prevalence and impact of specific weakness classes within this software category, and look up a product’s complete vulnerability history to assess long-term risk exposure. By centralizing this data, the page aims to provide a comprehensive view of the security posture of the Employee Management System over time. Users can analyze trends in reported flaws, identify recurring root causes, and evaluate how quickly vendors have addressed known issues. This information is critical for organizations relying on this system to prioritize patching efforts, conduct risk assessments, and make informed decisions about system maintenance and updates. The aggregated data includes details on severity scores, affected versions, and resolution statuses, offering a transparent and detailed overview of the security landscape for this specific product. It serves as a reference point for developers, IT managers, and security analysts who need to understand the specific threats facing their employee management infrastructure.

Vendor: SourceCodester

CVE IDTitleCVSSSeverityPublished
CVE-2025-6954 Campcodes Employee Management System applyleave.php sql injection CWE-89 7.3 High2025-07-01
CVE-2025-6610 itsourcecode Employee Management System editempprofile.php sql injection CWE-89 4.7 Medium2025-06-25
CVE-2025-3537 Tutorials-Website Employee Management System update-user.php improper authorization CWE-285 5.3 Medium2025-04-13
CVE-2025-3536 Tutorials-Website Employee Management System delete-user.php improper authorization CWE-285 6.5 Medium2025-04-13
CVE-2025-1905 SourceCodester Employee Management System employee.php cross site scripting CWE-79 3.5 Low2025-03-04
CVE-2025-1591 SourceCodester Employee Management System Department Page department.php cross site scripting CWE-79 2.4 Low2025-02-23
CVE-2025-1167 Mayuri K Employee Management System Update_User.php sql injection CWE-89 6.3 Medium2025-02-11
CVE-2025-1160 SourceCodester Employee Management System index.php default credentials CWE-1392 7.3 High2025-02-10
CVE-2024-9083 SourceCodester Employee Management System add-admin.php cross site scripting CWE-79 2.4 Low2024-09-22
CVE-2024-2394 SourceCodester Employee Management System add-admin.php unrestricted upload CWE-434 4.7 Medium2024-03-12
CVE-2024-1878 SourceCodester Employee Management System myprofile.php sql injection CWE-89 6.3 Medium2024-02-26
CVE-2024-1877 SourceCodester Employee Management System cancel.php sql injection CWE-89 6.3 Medium2024-02-26
CVE-2024-1876 SourceCodester Employee Management System psubmit.php sql injection CWE-89 7.3 High2024-02-26
CVE-2024-1871 SourceCodester Employee Management System Project Assignment Report assignp.php cross site scripting CWE-79 3.5 Low2024-02-24
CVE-2024-1833 SourceCodester Employee Management System login.php sql injection CWE-89 7.3 High2024-02-23
CVE-2024-1011 SourceCodester Employee Management System Leave delete-leave.php access control CWE-284 4.3 Medium2024-01-29
CVE-2024-1010 SourceCodester Employee Management System edit-profile.php cross site scripting CWE-79 3.5 Low2024-01-29
CVE-2024-1009 SourceCodester Employee Management System login.php sql injection CWE-89 7.3 High2024-01-29
CVE-2024-1008 SourceCodester Employee Management System Profile Page edit-photo.php unrestricted upload CWE-434 4.7 Medium2024-01-29
CVE-2024-1007 SourceCodester Employee Management System edit_profile.php sql injection CWE-89 6.3 Medium2024-01-29
CVE-2022-2724 SourceCodester Employee Management System aprocess.php sql injection CWE-89 6.3 Medium2022-08-09
CVE-2022-2723 SourceCodester Employee Management System eprocess.php sql injection CWE-89 6.3 Medium2022-08-09
CVE-2022-2715 SourceCodester Employee Management System eloginwel.php sql injection CWE-89 6.3 Medium2022-08-09

All 53 known CVE vulnerabilities affecting Employee Management System with full Chinese analysis, references, and POCs where available.