Menu

#17 SQL Injection and Cross Site Scripting Vulnerabilities

v1.04
open
Bug (2)
9
2021-05-08
2021-05-08
No

PHP Timeclock versions 1.04 and prior suffer from serious security vulnerabilities including SQL injection and Cross Site Scripting. This goes without saying but do not use this product anymore in 2021. You can read more about the vulnerabilities here https://github.com/tcbutler320/PHP-Timeclock-1.04-XSS-SQLI or on exploit-db here https://www.exploit-db.com/exploits/49849.

Discussion


Log in to post a comment.

Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.