Vulnerabilities > Badminton Center Management System Project > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-06-02 CVE-2022-31989 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8
2022-06-02 CVE-2022-31990 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via bcms/classes/Master.php?f=delete_product.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8
2022-06-02 CVE-2022-31991 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via bcms/classes/Master.php?f=delete_court.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8
2022-06-02 CVE-2022-31993 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/classes/Master.php?f=delete_service.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8
2022-06-02 CVE-2022-32002 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/courts/manage_court.php?id=.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8
2022-06-02 CVE-2022-30490 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System V1.0 is vulnerable to SQL Injection via parameter 'id' in /bcms/admin/court_rentals/update_status.php.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8
2022-05-24 CVE-2022-30455 SQL Injection vulnerability in Badminton Center Management System Project Badminton Center Management System 1.0
Badminton Center Management System 1.0 is vulnerable to SQL Injection via /bcms/classes/Master.php?f=delete_court_rental, id.
network
low complexity
badminton-center-management-system-project CWE-89
critical
9.8