A vulnerability, which was classified as critical, was found in KLiK SocialMediaWebsite 1.0. This issue affects some unknown processing of the component HTTP POST Request Parameter Handler. Such manipulation leads to injection.
This vulnerability is uniquely identified as CVE-2026-9422. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability, which was classified as critical, has been found in KLiK SocialMediaWebsite 1.0. This vulnerability affects the function uniqid of the file upload.inc.php of the component File Handler. This manipulation causes unrestricted upload.
This vulnerability is handled as CVE-2026-9421. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability classified as critical was found in KLiK SocialMediaWebsite 1.0. This affects an unknown part of the component HTTP GET Request Parameter Handler. The manipulation results in injection.
This vulnerability is known as CVE-2026-9420. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability classified as problematic has been found in code-projects Employee Management System 1.0. Affected by this issue is some unknown functionality of the file /empproject.php. The manipulation of the argument ID leads to cross site scripting.
This vulnerability is traded as CVE-2026-9419. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability described as problematic has been identified in code-projects Employee Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /changepassemp.php. Executing a manipulation of the argument ID can lead to cross site scripting.
This vulnerability appears as CVE-2026-9418. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability marked as problematic has been reported in code-projects Employee Management System 1.0. Affected is an unknown function of the file /myprofileup.php. Performing a manipulation of the argument ID results in cross site scripting.
This vulnerability is reported as CVE-2026-9417. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability labeled as problematic has been found in code-projects Employee Management System 1.0. This impacts an unknown function of the file /myprofile.php. Such manipulation of the argument ID leads to cross site scripting.
This vulnerability is documented as CVE-2026-9416. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability identified as problematic has been detected in code-projects Employee Management System 1.0. This affects an unknown function of the file /eloginwel.php. This manipulation of the argument ID causes cross site scripting.
This vulnerability is registered as CVE-2026-9415. Remote exploitation of the attack is possible. Furthermore, an exploit is available.