CVE-2025-1167

CVSS 3.1 Score 6.3 of 10 (medium)

Details

Published Feb 11, 2025
Updated: Feb 18, 2025
CWE ID 89
CWE ID 74

Summary

CVE-2025-1167 is a critical vulnerability identified in Mayuri K Employee Management System versions up to 192.168.70.3. This issue affects an unknown functionality of the file /hr_soft/admin/Update_User.php. An attacker can manipulate the argument id, leading to SQL injection, which may be exploited remotely. The exploit for this vulnerability has been disclosed to the public and poses a significant risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share