Le-yan Personnel and Salary Management System has hard-coded database account and password within the website source code. An unauthenticated remote attacker can access, modify system data or disrupt service.

Project Subscriptions

Vendors Products
Salary Management System Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-40718 Le-yan Personnel and Salary Management System has hard-coded database account and password within the website source code. An unauthenticated remote attacker can access, modify system data or disrupt service.
Fixes

Solution

Contact tech support from Le-yan Co., Ltd.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published:

Updated: 2024-09-16T19:19:15.549Z

Reserved: 2022-08-10T00:00:00.000Z

Link: CVE-2022-38116

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-08-30T05:15:07.977

Modified: 2024-11-21T07:15:49.543

Link: CVE-2022-38116

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses