Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2024-34223 — CVE-2024-34223 | Insecure permission | Kitploit
Tools/GitHubGitHub/dovankha/cve-2024-34223
Vulnerability AnalysisWeb SecurityPenetration TestingMisconfigurationLearning & Education
GitHubdovankha/cve-2024-34223

CVE-2024-34223

CVE-2024-34223 | Insecure permission

View Repository
2 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Human Resource Management System Project in PHP and MySQL Free Source Code

Submitter: Kha Do

Vulnerability

Insecure Permission

Description

Insecure permission vulnerability in /hrm/leaverequest.php in SourceCodester Human Resource Management System 1.0 allow attackers to approve or reject leave ticket.

Affected component

Path URL: /hrm/leaverequest.php

Parameter: ?msg=, ?id=

Impact

The normal user can self-approve or reject leave ticket, which is not permitted.

id: accept ticket.

msg: reject ticket.

PoC

https://github.com/dovankha/CVE-2024-34223/assets/63991630/05efa194-bcc4-4ecf-bf47-8316fae2452a

Download Tool