CVE-2022-47859: Lead Management System Project Lead Management System

Critical severity, CVSS 9.8. EPSS: 0.9% chance of exploitation in the next 30 days.

Lead Management System v1.0 is vulnerable to SQL Injection via the user_id parameter in changePassword.php.

Affected products

Published 2023-01-11. Last modified 2026-06-17.