Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/itsourcecode/Employee-Management-System

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-9449 is a medium severity SQL injection vulnerability in version 1.0 of the code-projects Employee Management System. The flaw exists in an unspecified function within the /changepassemp.php file and can be exploited remotely without user interaction. The vulnerability allows an attacker to manipulate SQL queries, potentially compromising the database. No official patch or remediation guidance is currently available from the vendor. Exploit code is publicly available, but there are no confirmed reports of exploitation in the wild.

Join the discussion

A flaw has been found in code-projects Employee Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /changepassemp.php. Executing a manipulation of the argument ID can lead to cross site scripting. The attack may be performed from remote. The exploit has been published and may be used.

Join the discussion

A security vulnerability has been detected in code-projects Employee Management System 1.0. The affected element is an unknown function of the file 370project/cancel.php. The manipulation of the argument id/token leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used.

Join the discussion

CVE-2026-7063 is a medium severity SQL injection vulnerability in code-projects Employee Management System version 1.0. It affects the /370project/process/eprocess.php endpoint by allowing remote attackers to manipulate the 'pwd' argument to perform SQL injection. The vulnerability is publicly known but there is no confirmed patch or official remediation available at this time.

Join the discussion

A vulnerability, which was classified as critical, was found in itsourcecode Employee Management System 1.0. Affected is an unknown function of the file /admin/index.php. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

Join the discussion
CVE-2024-28595: n/aCVE-2024-28595
0

SQL Injection vulnerability in Employee Management System v1.0 allows attackers to run arbitrary SQL commands via the admin_id parameter in update-admin.php.

Join the discussion

Showing 1 to 6 of 6 results

Filters:Package: pkg:github/itsourcecode/Employee-Management-System
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses