Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-11-22 CVE-2022-42098 SQL Injection vulnerability in Klik-Socialmediawebsite Project Klik-Socialmediawebsite 1.0.1
KLiK SocialMediaWebsite version v1.0.1 is vulnerable to SQL Injection via the profile.php.
network
low complexity
klik-socialmediawebsite-project CWE-89
8.8
2022-11-22 CVE-2022-43214 SQL Injection vulnerability in Billing System Project Billing System 1.0
Billing System Project v1.0 was discovered to contain a SQL injection vulnerability via the orderId parameter at printOrder.php.
network
low complexity
billing-system-project CWE-89
critical
9.8
2022-11-22 CVE-2022-43215 SQL Injection vulnerability in Billing System Project Billing System 1.0
Billing System Project v1.0 was discovered to contain a SQL injection vulnerability via the endDate parameter at getOrderReport.php.
network
low complexity
billing-system-project CWE-89
critical
9.8
2022-11-22 CVE-2022-43709 SQL Injection vulnerability in Mybb
MyBB 1.8.31 has a SQL injection vulnerability in the Admin CP's Users module allows remote authenticated users to modify the query string via direct user input or stored search filter settings.
network
low complexity
mybb CWE-89
4.9
2022-11-21 CVE-2022-44785 SQL Injection vulnerability in Maggioli Appalti & Contratti 9.12.2
An issue was discovered in Appalti & Contratti 9.12.2.
network
low complexity
maggioli CWE-89
critical
9.8
2022-11-21 CVE-2022-38148 SQL Injection vulnerability in Silverstripe Framework
Silverstripe silverstripe/framework through 4.11 allows SQL Injection.
network
low complexity
silverstripe CWE-89
8.8
2022-11-21 CVE-2022-4093 SQL Injection vulnerability in Dolibarr Erp/Crm 16.0.1/16.0.2
SQL injection attacks can result in unauthorized access to sensitive data, such as passwords, credit card details, or personal user information.
network
low complexity
dolibarr CWE-89
critical
9.8
2022-11-18 CVE-2022-42497 SQL Injection vulnerability in Api2Cart Bridge Connector 1.0.0/1.1.0
Arbitrary Code Execution vulnerability in Api2Cart Bridge Connector plugin <= 1.1.0 on WordPress.
network
low complexity
api2cart CWE-89
critical
9.8
2022-11-18 CVE-2022-44413 SQL Injection vulnerability in Automotive Shop Management System Project Automotive Shop Management System 1.0
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=.
7.2
2022-11-18 CVE-2022-44414 SQL Injection vulnerability in Automotive Shop Management System Project Automotive Shop Management System 1.0
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/services/manage_service.php?id=.
7.2