Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-11-03 CVE-2022-39323 SQL Injection vulnerability in Glpi-Project Glpi
GLPI stands for Gestionnaire Libre de Parc Informatique.
network
low complexity
glpi-project CWE-89
critical
9.8
2022-11-02 CVE-2022-43066 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/classes/Master.php?f=delete_message.
7.2
2022-11-02 CVE-2022-43068 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /classes/Master.php?f=delete_reservation.
7.2
2022-11-02 CVE-2022-43226 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/?page=appointments/view_appointment.
8.8
2022-11-02 CVE-2022-43227 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /odlms/admin/?page=appointments/view_appointment.
7.2
2022-11-02 CVE-2022-41551 SQL Injection vulnerability in Garage Management System Project Garage Management System 1.0
Garage Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /garage/editorder.php.
network
low complexity
garage-management-system-project CWE-89
7.2
2022-11-01 CVE-2022-43328 SQL Injection vulnerability in Canteen Management System Project Canteen Management System 1.0
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
network
low complexity
canteen-management-system-project CWE-89
7.2
2022-11-01 CVE-2022-43329 SQL Injection vulnerability in Canteen Management System Project Canteen Management System 1.0
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /print.php.
network
low complexity
canteen-management-system-project CWE-89
7.2
2022-11-01 CVE-2022-43330 SQL Injection vulnerability in Canteen Management System Project Canteen Management System 1.0
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
network
low complexity
canteen-management-system-project CWE-89
7.2
2022-11-01 CVE-2022-43331 SQL Injection vulnerability in Canteen Management System Project Canteen Management System 1.0
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php_action/printOrder.php.
network
low complexity
canteen-management-system-project CWE-89
7.2