Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-08-28 CVE-2023-40748 SQL Injection vulnerability in PHPjabbers Food Delivery Script 3.0
PHPJabbers Food Delivery Script 3.0 has a SQL injection (SQLi) vulnerability in the "q" parameter of index.php.
network
low complexity
phpjabbers CWE-89
critical
9.8
2023-08-28 CVE-2023-40749 SQL Injection vulnerability in PHPjabbers Food Delivery Script 3.0
PHPJabbers Food Delivery Script v3.0 is vulnerable to SQL Injection in the "column" parameter of index.php.
network
low complexity
phpjabbers CWE-89
critical
9.8
2023-08-27 CVE-2023-33852 SQL Injection vulnerability in IBM Security Guardium 11.4
IBM Security Guardium 11.4 is vulnerable to SQL injection.
network
low complexity
ibm CWE-89
5.4
2023-08-27 CVE-2023-4557 SQL Injection vulnerability in Inventory Management System Project Inventory Management System 1.0
A vulnerability classified as critical has been found in SourceCodester Inventory Management System 1.0.
network
low complexity
inventory-management-system-project CWE-89
critical
9.8
2023-08-22 CVE-2023-23563 SQL Injection vulnerability in Geomatika Isigeo web 6.0
An issue was discovered in Geomatika IsiGeo Web 6.0.
network
low complexity
geomatika CWE-89
6.5
2023-08-22 CVE-2023-37429 SQL Injection vulnerability in Arubanetworks Edgeconnect Sd-Wan Orchestrator
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance.
network
low complexity
arubanetworks CWE-89
8.1
2023-08-22 CVE-2023-37430 SQL Injection vulnerability in Arubanetworks Edgeconnect Sd-Wan Orchestrator
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance.
network
low complexity
arubanetworks CWE-89
8.1
2023-08-22 CVE-2023-37431 SQL Injection vulnerability in Arubanetworks Edgeconnect Sd-Wan Orchestrator
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance.
network
low complexity
arubanetworks CWE-89
8.1
2023-08-22 CVE-2023-37432 SQL Injection vulnerability in Arubanetworks Edgeconnect Sd-Wan Orchestrator
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance.
network
low complexity
arubanetworks CWE-89
8.1
2023-08-22 CVE-2023-37433 SQL Injection vulnerability in Arubanetworks Edgeconnect Sd-Wan Orchestrator
Multiple vulnerabilities in the web-based management interface of EdgeConnect SD-WAN Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the EdgeConnect SD-WAN Orchestrator instance.
network
low complexity
arubanetworks CWE-89
8.1