A SQL injection vulnerability in CodeAstro Simple Attendance Management System v1.0 allows remote unauthenticated attackers to bypass authentication via the username parameter in index.php.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-04-17 15:16
Updated : 2026-06-17 10:41
NVD link : CVE-2026-37749
Mitre link : CVE-2026-37749
CVE.ORG link : CVE-2026-37749
JSON object : View
Products Affected
No product.
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
