Description
A vulnerability was detected in SourceCodester Leave Application System 1.0. This affects an unknown part. Performing a manipulation of the argument page results in file inclusion. Remote exploitation of the attack is possible. The exploit is now public and may be used.
Problem types
Product status
Timeline
| 2026-03-31: | Advisory disclosed |
| 2026-03-31: | VulDB entry created |
| 2026-03-31: | VulDB entry last update |
Credits
Hemant Raj Bhati (VulDB User)
References
vuldb.com/vuln/354346 (VDB-354346 | SourceCodester Leave Application System file inclusion)
vuldb.com/vuln/354346/cti (VDB-354346 | CTI Indicators (IOB, IOC, IOA))
vuldb.com/submit/780419 (Submit #780419 | SourceCodester Leave Application System in PHP and SQLite3 1.0 Local File Inclusion)
medium.com/...ve-application-system-php-sqlite3-4e095bb7ee40
www.sourcecodester.com/