CVE-2026-10624
MEDIUM SEVERITYCVSS Score & Metrics
Base Score
4.3 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Vulnerability Description
A vulnerability has been found in SourceCodester Human Resource Management 1.0. Affected by this vulnerability is an unknown functionality of the file /detailview.php of the component Employee View Page. Such manipulation of the argument employeeid leads to improper control of resource identifiers. The attack may be performed from remote. The exploit has been disclosed to the public and may be used.
Vulnerability Details
Published Date
Last Modified
CWE ID
CWE-99
Source
NVD
Vendor
SourceCodester
Product
Human Resource Management
External References
- https://r4sh7n.medium.com/insecure-direct-object-reference-idor-vulnerability-in-employee-management-functionality-70df8ac5b1d3?postPublishedType=repub
- https://vuldb.com/cve/CVE-2026-10624
- https://vuldb.com/submit/829766
- https://vuldb.com/vuln/367929
- https://vuldb.com/vuln/367929/cti
- https://www.sourcecodester.com/
Discussion (0)
Add Comment
No comments yet. Be the first!