Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2022-11-01 CVE-2022-43124 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=user/manage_user.
7.2
2022-11-01 CVE-2022-43125 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /appointments/manage_appointment.php.
7.2
2022-11-01 CVE-2022-43126 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/tests/manage_test.php.
7.2
2022-11-01 CVE-2022-43127 SQL Injection vulnerability in Online Diagnostic LAB Management System Project Online Diagnostic LAB Management System 1.0
Online Diagnostic Lab Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /appointments/update_status.php.
7.2
2022-11-01 CVE-2022-43353 SQL Injection vulnerability in Sanitization Management System Project Sanitization Management System 1.0
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/view_order.
7.2
2022-11-01 CVE-2022-43354 SQL Injection vulnerability in Sanitization Management System Project Sanitization Management System 1.0
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/manage_request.
7.2
2022-11-01 CVE-2022-43355 SQL Injection vulnerability in Sanitization Management System Project Sanitization Management System 1.0
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_service.
7.2
2022-10-31 CVE-2022-3059 SQL Injection vulnerability in Schoolbox 21.0.2
The application was vulnerable to multiple instances of SQL injection (authenticated and unauthenticated) through a vulnerable parameter.
network
low complexity
schoolbox CWE-89
7.5
2022-10-31 CVE-2022-41680 SQL Injection vulnerability in Formalms
Forma LMS on its 3.1.0 version and earlier is vulnerable to a SQL injection vulnerability.
network
low complexity
formalms CWE-89
6.5
2022-10-31 CVE-2022-42923 SQL Injection vulnerability in Formalms
Forma LMS on its 3.1.0 version and earlier is vulnerable to a SQL injection vulnerability.
network
low complexity
formalms CWE-89
8.8