CVE-2021-44088
Sourcecodester Attendance and Payroll System SQL Injection Authentication Bypass
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
An SQL injection vulnerability in the Sourcecodester Attendance and Payroll System allows remote attackers to bypass authentication by exploiting unsanitized login parameters. This could lead to unauthorized access to sensitive data or system functions.