Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-10-26 CVE-2023-42406 SQL Injection vulnerability in Dlink Dar-7000 Firmware 31R02B1413C
SQL injection vulnerability in D-Link Online behavior audit gateway DAR-7000 V31R02B1413C allows a remote attacker to obtain sensitive information and execute arbitrary code via the editrole.php component.
network
low complexity
dlink CWE-89
critical
9.8
2023-10-26 CVE-2023-46748 SQL Injection vulnerability in F5 products
An authenticated SQL injection vulnerability exists in the BIG-IP Configuration utility which may allow an authenticated attacker with network access to the Configuration utility through the BIG-IP management port and/or self IP addresses to execute arbitrary system commands.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated
network
low complexity
f5 CWE-89
8.8
2023-10-26 CVE-2023-5804 SQL Injection vulnerability in PHPgurukul Nipah Virus Testing Management System 1.0
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0 and classified as critical.
network
low complexity
phpgurukul CWE-89
critical
9.8
2023-10-26 CVE-2023-46435 SQL Injection vulnerability in Oretnom23 Packers and Movers Management System 1.0
Sourcecodester Packers and Movers Management System v1.0 is vulnerable to SQL Injection via mpms/?p=services/view_service&id.
network
low complexity
oretnom23 CWE-89
critical
9.8
2023-10-26 CVE-2023-5794 SQL Injection vulnerability in PHPgurukul Online Railway Catering Management System 1.0
A vulnerability was found in PHPGurukul Online Railway Catering System 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2023-10-26 CVE-2023-5792 SQL Injection vulnerability in Remyandrade Sticky Notes APP 1.0
A vulnerability has been found in SourceCodester Sticky Notes App 1.0 and classified as critical.
network
low complexity
remyandrade CWE-89
critical
9.8
2023-10-26 CVE-2023-5787 SQL Injection vulnerability in Longmenedutech Score Query System 5.0
A vulnerability was found in Shaanxi Chanming Education Technology Score Query System 5.0.
network
low complexity
longmenedutech CWE-89
8.8
2023-10-26 CVE-2023-5784 SQL Injection vulnerability in Netentsec Application Security Gateway 6.3
A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3 and classified as critical.
network
low complexity
netentsec CWE-89
critical
9.8
2023-10-26 CVE-2023-5785 SQL Injection vulnerability in Netentsec Application Security Gateway 6.3
A vulnerability was found in Netentsec NS-ASG Application Security Gateway 6.3.
network
low complexity
netentsec CWE-89
7.5
2023-10-26 CVE-2023-5782 SQL Injection vulnerability in Tongda2000 Tongda Office Anywhere
A vulnerability, which was classified as critical, was found in Tongda OA 2017 up to 11.10.
network
low complexity
tongda2000 CWE-89
critical
9.8