Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-03-30 CVE-2023-1735 SQL Injection vulnerability in Young Entrepreneur E-Negosyo System Project Young Entrepreneur E-Negosyo System 1.0
A vulnerability classified as critical was found in SourceCodester Young Entrepreneur E-Negosyo System 1.0.
network
low complexity
young-entrepreneur-e-negosyo-system-project CWE-89
critical
9.8
2023-03-30 CVE-2023-1736 SQL Injection vulnerability in Young Entrepreneur E-Negosyo System Project Young Entrepreneur E-Negosyo System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Young Entrepreneur E-Negosyo System 1.0.
8.8
2023-03-30 CVE-2023-1737 SQL Injection vulnerability in Young Entrepreneur E-Negosyo System Project Young Entrepreneur E-Negosyo System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Young Entrepreneur E-Negosyo System 1.0.
network
low complexity
young-entrepreneur-e-negosyo-system-project CWE-89
critical
9.8
2023-03-30 CVE-2023-0620 SQL Injection vulnerability in Hashicorp Vault
HashiCorp Vault and Vault Enterprise versions 0.8.0 through 1.13.1 are vulnerable to an SQL injection attack when configuring the Microsoft SQL (MSSQL) Database Storage Backend.
local
low complexity
hashicorp CWE-89
6.7
2023-03-29 CVE-2022-42428 SQL Injection vulnerability in Centreon
This vulnerability allows remote attackers to escalate privileges on affected installations of Centreon.
network
low complexity
centreon CWE-89
8.8
2023-03-29 CVE-2023-27167 SQL Injection vulnerability in Supremainc Biostar 2
Suprema BioStar 2 v2.8.16 was discovered to contain a SQL injection vulnerability via the values parameter at /users/absence?search_month=1.
network
low complexity
supremainc CWE-89
6.5
2023-03-28 CVE-2023-1674 SQL Injection vulnerability in School Registration and FEE System Project School Registration and FEE System 1.0
A vulnerability was found in SourceCodester School Registration and Fee System 1.0 and classified as critical.
network
low complexity
school-registration-and-fee-system-project CWE-89
critical
9.8
2023-03-28 CVE-2023-1675 SQL Injection vulnerability in School Registration and FEE System Project School Registration and FEE System 1.0
A vulnerability was found in SourceCodester School Registration and Fee System 1.0.
network
low complexity
school-registration-and-fee-system-project CWE-89
critical
9.8
2023-03-28 CVE-2023-25196 SQL Injection vulnerability in Apache Fineract
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Apache Software Foundation Apache Fineract. Authorized users may be able to change or add data in certain components.
network
low complexity
apache CWE-89
4.3
2023-03-27 CVE-2023-1666 SQL Injection vulnerability in Automatic Question Paper Generator System Project Automatic Question Paper Generator System 1.0
A vulnerability has been found in SourceCodester Automatic Question Paper Generator System 1.0 and classified as critical.
9.8