Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-05-15 CVE-2023-31844 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_subject.php?id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2
2023-05-15 CVE-2023-31845 SQL Injection vulnerability in Faculty Evaluation System Project Faculty Evaluation System 1.0
Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_class.php?id=.
network
low complexity
faculty-evaluation-system-project CWE-89
7.2
2023-05-12 CVE-2023-30246 SQL Injection vulnerability in Judging Management System Project Judging Management System 1.0
SQL injection vulnerability found in Judging Management System v.1.0 allows a remote attacker to execute arbitrary code via the contestant_id parameter.
network
low complexity
judging-management-system-project CWE-89
critical
9.8
2023-05-12 CVE-2023-2672 SQL Injection vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2023-05-12 CVE-2023-2669 SQL Injection vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability was found in SourceCodester Lost and Found Information System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2023-05-12 CVE-2023-2668 SQL Injection vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability was found in SourceCodester Lost and Found Information System 1.0 and classified as critical.
network
low complexity
oretnom23 CWE-89
critical
9.8
2023-05-12 CVE-2023-29809 SQL Injection vulnerability in Companymaps Project Companymaps 8.0
SQL injection vulnerability found in Maximilian Vogt companymaps (cmaps) v.8.0 allows a remote attacker to execute arbitrary code via a crafted script in the request.
network
low complexity
companymaps-project CWE-89
critical
9.8
2023-05-12 CVE-2023-30192 SQL Injection vulnerability in Prestashop Possearchproducts 1.7
Prestashop possearchproducts 1.7 is vulnerable to SQL Injection via PosSearch::find().
network
low complexity
prestashop CWE-89
critical
9.8
2023-05-11 CVE-2023-28359 SQL Injection vulnerability in Rocket.Chat
A NoSQL injection vulnerability has been identified in the listEmojiCustom method call within Rocket.Chat.
network
low complexity
rocket-chat CWE-89
5.3
2023-05-11 CVE-2023-2659 SQL Injection vulnerability in Oretnom23 Online Computer and Laptop Store 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Online Computer and Laptop Store 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8