Skip to content
Noroxi

simplehrm records

2 published records for vendor simplehrm.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20

Bar: total · dark part: CISA KEV.

All records

2 records
  • CVE-2013-2499
    31Monitor

    SimpleHRM 2.3 and earlier could allow remote attackers to bypass the authentication process in 'user_manager.php' via spoofing a cookie.

    HighCVSS 7.5No exploitEPSS 3%

    simplehrm · simplehrmJan 27, 2020

  • CVE-2013-2498
    30Monitor

    SQL injection vulnerability in the login page in flexycms/modules/user/user_manager.php in SimpleHRM 2.3, 2.2, and earlier allows remote att

    HighCVSS 7.5Proof of conceptEPSS 1%

    simplehrm · simplehrmFeb 28, 2014