Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\position_edit.php.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/debug601/bug_report
- https://github.com/k0xx11/bug_report