timeclock-software
Enterprise Softwarecommercial
Top products
Latest CVEs
The 4 most recently published vulnerabilities affecting timeclock-software.
- CVE-2010-0122Multiple SQL injection vulnerabilities in Employee Timeclock Software 0.99 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to (a) auth.php or...7.5
- CVE-2010-0123The database backup implementation in Employee Timeclock Software 0.99 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a ...5.0
- CVE-2010-0124Employee Timeclock Software 0.99 places the database password on the mysqldump command line, which allows local users to obtain sensitive information by listing the process.2.1
- CVE-2010-0707Cross-site request forgery (CSRF) vulnerability in add_user.php in Employee Timeclock Software 0.99 allows remote attackers to hijack the authentication of an administrator for requests that create...6.8