Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2022-46950 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_window.
7.2
2023-01-13 CVE-2022-46951 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_uploads.
7.2
2023-01-13 CVE-2022-46952 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_user.
7.2
2023-01-13 CVE-2022-46953 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=save_window.
7.2
2023-01-13 CVE-2022-46954 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=delete_transaction.
network
low complexity
dynamic-transaction-queuing-system-project CWE-89
critical
9.8
2023-01-13 CVE-2022-46955 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/ajax.php?action=save_queue.
network
low complexity
dynamic-transaction-queuing-system-project CWE-89
critical
9.8
2023-01-13 CVE-2022-46956 SQL Injection vulnerability in Dynamic Transaction Queuing System Project Dynamic Transaction Queuing System 1.0
Dynamic Transaction Queuing System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/manage_user.php.
7.2
2023-01-13 CVE-2022-48090 SQL Injection vulnerability in Hotel Management System Project Hotel Management System 20220411
Tramyardg hotel-mgmt-system version 2022.4 is vulnerable to SQL Injection via /app/dao/CustomerDAO.php.
network
low complexity
hotel-management-system-project CWE-89
6.5
2023-01-13 CVE-2022-46502 SQL Injection vulnerability in Online Student Enrollment System Project Online Student Enrollment System 1.0
Online Student Enrollment System v1.0 was discovered to contain a SQL injection vulnerability via the username parameter at /student_enrollment/admin/login.php.
network
low complexity
online-student-enrollment-system-project CWE-89
critical
9.8
2023-01-13 CVE-2022-46471 SQL Injection vulnerability in Online Health Care System Project Online Health Care System 1.0
Online Health Care System v1.0 was discovered to contain a SQL injection vulnerability via the consulting_id parameter at /healthcare/Admin/consulting_detail.php.
network
low complexity
online-health-care-system-project CWE-89
critical
9.8